Filtering Secure Score by Department
You have a Microsoft 365 E5 subscription. From the Microsoft 365 Defender portal, you review your company’s Microsoft Secure Score. You discover a large number of recommended actions. You need to ensure that the actions can be filtered based on specific department names. What should you create first?
Community Votes
100% of anonymous learners picked answer B. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
The exam tests knowledge of Secure Score management features, specifically highlighting that Tags are the mechanism for categorizing and filtering recommendations, whereas Administrative Units are for delegation.
This question addresses how to filter Microsoft Secure Score recommendations by department using Tags. It establishes that creating a Tag is the required first step to enable filtering capabilities in the Defender portal.
Candidates often choose Administrative Units (C) because they associate 'departments' with admin scopes. However, Admin Units do not provide the filtering view needed for Secure Score recommendations.
Community Discussion (6 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Why the Answer Is Correct
Creating a Tag (Option B) is the correct first step. In Microsoft 365 Defender, Tags allow administrators to categorize users, devices, and mailboxes based on attributes like department. Once a tag is created and applied to objects, it becomes available as a filter option in the Secure Score recommendations view, enabling targeted remediation.Why the Other Options Are Wrong
Administrative Units (C) are designed for delegating administrative tasks and permissions, not for filtering views within Secure Score. While they segment users, they do not expose a filtering dimension for score recommendations. Dynamic Security Groups (A) manage membership but do not inherently create a filter category in the Secure Score UI. Custom Detection Rules (D) relate to threat detection logic, not score organization or filtering.Community Comment Notes
Community consensus strongly supports Option B. As noted by user 'examcrammer', testing this workflow confirms that creating a tag makes it visible for filtering in the portal. User '[Removed]' emphasized that among the given choices, only Tags offer the necessary filtering capability for Secure Score actions.Official Reference
Exam Strategy
Differentiate between 'Delegation' (Admin Units) and 'View/Filter Management' (Tags). When a question asks about organizing or filtering views rather than assigning permissions, look for Tags or Labels.
Frequently Asked Questions
Why not use Administrative Units to filter Secure Score?
Administrative Units delegate permissions and management scope. They do not provide a filtering interface for viewing or prioritizing Secure Score recommendations.
Do I need to apply the tag manually after creating it?
Yes, you must assign the created tag to specific users or devices before it appears as an available filter option in the Secure Score view.
Related Analysis
Practice All MS-102 Questions
Access 111 questions with complete answers and detailed explanations.
View Full MS-102 Practice Test →