MS-102 Manage security and threats by using Microsoft Defender XDR • Set 3
MS-102 Manage security and threats by using Microsoft Defender XDR Practice Test 3 — 15 questions with explanations. Free, no signup.
A security administrator needs to create an automated investigation and response (AIR) playbook that automatically isolates a device whenever a high-severity alert from Microsoft Defender for Endpoint is generated. The playbook should run without requiring manual approval. Which capability in Microsoft 365 Defender should the administrator configure?