Update windows/security/threat-protection/windows-defender-atp/manage-alerts-windows-defender-advanced-threat-protection.md

Changed 'if' to 'whether'

Co-Authored-By: lindspea <45809756+lindspea@users.noreply.github.com>
This commit is contained in:
JohanFreelancer9
2019-04-24 09:58:47 +02:00
committed by GitHub
parent 20740ba776
commit 0ab026534a

View File

@ -104,7 +104,7 @@ Alternatively, the team leader might assign the alert to the **Resolved** queue
## Alert classification ## Alert classification
You can choose not to set a classification, or specify if an alert is a true alert or a false alert. It's important to provide the classification of true positive/false positive. This classification is used to monitor alert quality to help tune alerts to be more accurate using this feedback. The "determination" field defines additional fidelity for a "true positive" classification. The determination contains values for "security testing" to address alerts triggered by intended suspect activity such as pen-testing, which are true positives from a detection perspective, but it's intended. You can choose not to set a classification, or specify whether an alert is a true alert or a false alert. It's important to provide the classification of true positive/false positive. This classification is used to monitor alert quality to help tune alerts to be more accurate by using this feedback. The "determination" field defines additional fidelity for a "true positive" classification. The determination contains values for "security testing" to address alerts triggered by intended suspect activity such as pen-testing, which are true positives from a detection perspective, but it's intended.
## Add comments and view the history of an alert ## Add comments and view the history of an alert
You can add comments and view historical events about an alert to see previous changes made to the alert. You can add comments and view historical events about an alert to see previous changes made to the alert.