You have an Azure subscription that contains a virtual machine named VM1 and uses Azure Defender. Azure Defender has automatic provisioning enabled.
You need to create a custom alert suppression rule that will supress false positive alerts for suspicious use of PowerShell on VM1.
What should you do first?
Lion007
Highly Voted 2 years, 11 months agoGurulee
1 year, 8 months agoMthaher
Highly Voted 3 years, 1 month agochepeerick
Most Recent 1 year, 7 months agomali1969
1 year, 9 months agomimguy
1 year, 11 months agoimhere4you
1 year, 11 months ago[Removed]
2 years, 3 months agojrjrjrchlv
2 years, 5 months agoLone__Wolf
2 years, 3 months agoFukacz
2 years, 8 months agosainfosec
2 years, 9 months agovnez
2 years, 9 months agoCatoFong
2 years, 10 months agosadako
3 years, 1 month agoj888
3 years, 1 month ago