Analysts investigating one incident pivot in the Microsoft Defender portal across related email and device alerts. What does that experience demonstrate?
Select an answer to reveal the explanation.
Short Explanation
One incident, two angles — mail and device — joined in the Defender portal. That pivot is the XDR-plus-portal story: investigate across products without hopping five different siloed consoles. Lists, version history, and community moderation are not that investigation experience.
Full Explanation
The Microsoft Defender portal supports investigating incidents with alerts that can span Defender products such as email and endpoint signals, reflecting XDR-style cross-domain investigation. Lists boards, SharePoint version history, and community moderation tools do not provide that Defender cross-product investigation experience.