You have an Azure subscription that contains a virtual machine named VM1 and uses Azure Defender. Azure Defender has automatic provisioning enabled.
You need to create a custom alert suppression rule that will supress false positive alerts for suspicious use of PowerShell on VM1.
What should you do first?
Lion007
Highly Voted 2 years, 6 months agoGurulee
1 year, 3 months agoMthaher
Highly Voted 2 years, 8 months agochepeerick
Most Recent 1 year, 2 months agomali1969
1 year, 4 months agomimguy
1 year, 6 months agoimhere4you
1 year, 6 months agoexmITQS
1 year, 10 months agojrjrjrchlv
2 years agoLone__Wolf
1 year, 11 months agoFukacz
2 years, 4 months agosainfosec
2 years, 5 months agovnez
2 years, 5 months agoCatoFong
2 years, 5 months agosadako
2 years, 8 months agoj888
2 years, 8 months ago