MicrosoftMicrosoft
MS-102 · Question #376
MS-102 Question #376: Real Exam Question with Answer & Explanation
Sign in or unlock MS-102 to reveal the answer and full explanation for question #376. The question stem and answer options stay visible for context.
Submitted by haruto_sh· Apr 18, 2026Manage security and threats by using Microsoft Defender XDR
Question
You have a Microsoft 365 subscription that uses Microsoft Defender for Endpoint. All the devices in your organization are onboarded to Microsoft Defender for Endpoint. You need to ensure that an alert is generated if malicious activity was detected on a device during the last 24 hours. What should you do?
Options
- AFrom the Microsoft Purview compliance portal, create a data loss prevention (DLP) policy.
- BFrom the Microsoft Defender portal, create an alert suppression rule and assign an alert.
- CFrom Advanced hunting, create a query and a detection rule.
- DFrom the Microsoft Defender portal, create an Advanced hunting query and a detection rule.
Unlock MS-102 to see the answer
You've previewed enough free MS-102 questions. Unlock MS-102 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#Defender for Endpoint#Advanced hunting#Custom detection#Security alerting