Update manage-auto-investigation.md

This commit is contained in:
Denise Vangel-MSFT
2021-01-28 17:08:38 -08:00
parent ffaa9acdaa
commit 0947750136

View File

@ -1,7 +1,7 @@
--- ---
title: Review and approve remediation actions following automated investigations title: Review remediation actions following automated investigations
description: Review and approve (or reject) remediation actions following an automated investigation. description: Review and approve (or reject) remediation actions following an automated investigation.
keywords: autoir, automated, investigation, detection, dashboard, source, threat types, id, tags, devices, duration, filter export keywords: autoir, automated, investigation, detection, remediation, action, pending, approved
search.product: eADQiWindows 10XVcnh search.product: eADQiWindows 10XVcnh
search.appverid: met150 search.appverid: met150
ms.prod: m365-security ms.prod: m365-security
@ -14,14 +14,14 @@ ms.localizationpriority: medium
manager: dansimp manager: dansimp
audience: ITPro audience: ITPro
ms.collection: ms.collection:
- m365-security-compliance - m365-security-compliance
- m365initiative-defender-endpoint - m365initiative-defender-endpoint
ms.topic: conceptual ms.topic: conceptual
ms.date: 01/28/2021 ms.date: 01/28/2021
ms.technology: mde ms.technology: mde
--- ---
# Review and approve remediation actions following an automated investigation # Review remediation actions following an automated investigation
[!INCLUDE [Microsoft 365 Defender rebranding](../../includes/microsoft-defender.md)] [!INCLUDE [Microsoft 365 Defender rebranding](../../includes/microsoft-defender.md)]
@ -54,7 +54,6 @@ Whether taken automatically or upon approval, an automated investigation can res
- Disable a driver - Disable a driver
- Remove a scheduled task - Remove a scheduled task
## Review pending actions ## Review pending actions
1. Go to the Microsoft 365 security center ([https://security.microsoft.com](https://security.microsoft.com)) and sign in.. 1. Go to the Microsoft 365 security center ([https://security.microsoft.com](https://security.microsoft.com)) and sign in..