mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-14 14:27:22 +00:00
Update windows/security/threat-protection/windows-defender-atp/manage-alerts-windows-defender-advanced-threat-protection.md
Simplified sentences. Co-Authored-By: lindspea <45809756+lindspea@users.noreply.github.com>
This commit is contained in:
parent
0ab026534a
commit
08c71bcf0e
@ -104,7 +104,7 @@ Alternatively, the team leader might assign the alert to the **Resolved** queue
|
|||||||
|
|
||||||
|
|
||||||
## Alert classification
|
## Alert classification
|
||||||
You can choose not to set a classification, or specify whether an alert is a true alert or a false alert. It's important to provide the classification of true positive/false positive. This classification is used to monitor alert quality to help tune alerts to be more accurate by using this feedback. The "determination" field defines additional fidelity for a "true positive" classification. The determination contains values for "security testing" to address alerts triggered by intended suspect activity such as pen-testing, which are true positives from a detection perspective, but it's intended.
|
You can choose not to set a classification, or specify whether an alert is a true alert or a false alert. It's important to provide the classification of true positive/false positive. This classification is used to monitor alert quality, and make alerts more accurate. The "determination" field defines additional fidelity for a "true positive" classification.
|
||||||
|
|
||||||
## Add comments and view the history of an alert
|
## Add comments and view the history of an alert
|
||||||
You can add comments and view historical events about an alert to see previous changes made to the alert.
|
You can add comments and view historical events about an alert to see previous changes made to the alert.
|
||||||
|
Loading…
x
Reference in New Issue
Block a user