FEFreeExamDumps.in

Microsoft Security Operations Analyst

Topic 5

Question 208

SC-200 voucher + Udemy course (lifetime access) = ₹3,500 for Indian ID card holders.

Details →

You have a Microsoft 365 E5 subscription that uses Microsoft Defender XDR. You have a custom detection rule named Rule1 that generates an alert if more than five antivirus detections are identified on a device. Rule1 has a lookback period of 12 hours. You need to change the lookback period to 48 hours. What should you modify for Rule1?

  • Athe scope
  • Bthe summarize operator of the KQL query
  • Cthe frequency
  • Dthe where operator of the KQL query