Skip to content

Commit 9c10c6c

Browse files
authored
Remove redundant note in incident summary
1 parent 9369a5a commit 9c10c6c

File tree

1 file changed

+2
-1
lines changed

1 file changed

+2
-1
lines changed

defender-xdr/dlp-investigate-alerts-defender.md

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -83,14 +83,15 @@ It's best practice to only grant minimal permissions to alerts in the Microsoft
8383

8484
1. Search for the DLP policy name of the alerts and incidents you're interested in.
8585

86-
1. To view the incident summary page, select the incident from the queue. Similarly, select the alert to view the DLP alert page. Note: Select **Summarize** for Security Copilot to generate a summary of the alert. The alert summary will contain the:
86+
1. To view the incident summary page, select the incident from the queue. Similarly, select the alert to view the DLP alert page. Select **Summarize** for Security Copilot to generate a summary of the alert. The alert summary will contain the:
8787

8888
- alert severity
8989
- alert title
9090
- the name of the policy that was matched
9191
- the name file involved and a link to the file
9292
- alert status
9393
- the email address of the user who performed the action that matched the policy
94+
9495
1. View the **Alert story** for details about policy and the sensitive information types detected in the alert. Select the event in the **Related Events** section to see the user activity details.
9596

9697
1. View the matched sensitive content in the **Sensitive info types** tab and the file content in the **Source** tab if you have the required permission (See details <a href="/microsoft-365/compliance/dlp-alerts-dashboard-get-started#roles" target="_blank">here</a>).

0 commit comments

Comments
 (0)