{"id":14866,"date":"2026-02-07T09:01:29","date_gmt":"2026-02-07T00:01:29","guid":{"rendered":"https:\/\/m365jp.net\/?p=14866"},"modified":"2026-02-07T09:03:18","modified_gmt":"2026-02-07T00:03:18","slug":"mc1228325-public-preview-new-built-in-alert-tuning-rules-for-microsoft-defender-for-endpoint-in-microsoft-defender-xdr","status":"publish","type":"post","link":"https:\/\/m365jp.net\/index.php\/2026-02-07-mc1228325-public-preview-new-built-in-alert-tuning-rules-for-microsoft-defender-for-endpoint-in-microsoft-defender-xdr","title":{"rendered":"MC1228325 | (Public Preview) New built in alert tuning rules for Microsoft Defender for Endpoint in Microsoft Defender XDR"},"content":{"rendered":"<div class=\"postie-post\">\n<div>\n<hr>\n<table id=\"section\">\n<tbody>\n<tr>\n<th width=\"95%\">MC1228325 | (Public Preview) New built in alert tuning rules for Microsoft Defender for Endpoint in Microsoft Defender XDR<\/th>\n<\/tr>\n<\/tbody>\n<\/table>\n<hr>\n<table id=\"data\">\n<tbody>\n<tr>\n<th>Classification<\/th>\n<td>stayInformed<\/td>\n<\/tr>\n<tr>\n<th>Last Updated<\/th>\n<td>02\/06\/2026 23:24:27<\/td>\n<\/tr>\n<tr>\n<th>Start Time<\/th>\n<td>02\/06\/2026 23:22:58<\/td>\n<\/tr>\n<tr>\n<th>End Time<\/th>\n<td>03\/20\/2026 07:00:00<\/td>\n<\/tr>\n<tr>\n<th>Message Content<\/th>\n<td>\n<p><b>[Introduction]<\/b><\/p>\n<p>Microsoft Defender XDR is adding six new Microsoft-curated built-in alert tuning rules for  <b>Microsoft Defender for Endpoint (MDE<\/b>) to help reduce low-priority endpoint alerts reaching your queues.    <\/p>\n<p><b>[When this will happen:]<\/b><\/p>\n<ul>\n<li>February 8, 2026: Rules become visible in the portal (Preview) for review.   <\/li>\n<li>February 8\u2013February 18, 2026: Rules are visible but not active, so you can review and opt out if needed.    <\/li>\n<li>February 18, 2026: Rules become active by default.   <\/li>\n<\/ul>\n<p><b>[How this affects your organization:]<\/b><\/p>\n<p><b>Who is affected: <\/b>Admins using Microsoft Defender XDR with MDE.<\/p>\n<p><b>What will happen:<\/b><\/p>\n<p><b><br \/>  <\/b><\/p>\n<ul>\n<li>With the default experience, you should see fewer informational or low severity endpoint alerts in your incident\/alert queues, because matching alerts will be handled automatically.    <\/li>\n<li>Some rules use <b>Resolve <\/b>and others use <b>Set as Behavior<\/b>, which reclassifies an alert as a behavior record. These alerts will not appear in open alert queues. They also will not generate incidents, while still remaining available for investigation   and hunting.<\/li>\n<li>You stay in control: all built in rules are visible in <b>Settings <\/b>&gt; <b>Microsoft Defender XDR<\/b> &gt;  <b>Alert Tuning<\/b>, and <b>you can disable any rule anytime<\/b>.   <\/li>\n<\/ul>\n<p><b>[What you can do to prepare:]<\/b><\/p>\n<ul>\n<li>No action required if you want the default experience.   <\/li>\n<li>To opt out, review and disable any of the new MDE rules during February 8\u2013February 18, 2026 (you can still disable later, but the rules will be on by default starting February 18, 2026).    <\/li>\n<li>If you manage multiple tenants, you can manage rule enablement at scale using  <b>Multi-Tenant Organization (MTO)<\/b> <b>content distribution<\/b>.   <\/li>\n<\/ul>\n<p>Learn more  <\/p>\n<ul>\n<li>Microsoft Defender XDR <a href=\"https:\/\/learn.microsoft.com\/en-us\/defender-xdr\/investigate-alerts?tabs=settings#built-in-alert-tuning-rules\" target=\"_blank\">  Alert Tuning<\/a> documentation  <\/li>\n<li><a href=\"https:\/\/techcommunity.microsoft.com\/category\/microsoft-defender-xdr\/blog\/microsoftthreatprotectionblog\" target=\"_blank\">Tech Community blog<\/a><\/li>\n<\/ul>\n<p><b>[Compliance considerations:]<\/b><\/p>\n<p>No compliance considerations identified; review as appropriate for your organization.    <\/p>\n<\/p>\n<\/td>\n<\/tr>\n<tr>\n<th>Machine Translation<\/th>\n<td>\n<p><b>[\u306f\u3058\u3081\u306b]<\/b><\/p>\n<p>Microsoft Defender XDR\u306f\u3001Microsoft <b>Defender for Endpoint(MDE<\/b>)\u5411\u3051\u306b\u3001\u4f4e\u512a\u5148\u5ea6\u306e\u30a8\u30f3\u30c9\u30dd\u30a4\u30f3\u30c8\u30a2\u30e9\u30fc\u30c8\u304c\u30ad\u30e5\u30fc\u306b\u5c4a\u304f\u306e\u3092\u6e1b\u3089\u3059\u305f\u3081\u306b\u3001Microsoft\u304c\u53b3\u9078\u3057\u305f6\u3064\u306e\u65b0\u3057\u3044\u30a2\u30e9\u30fc\u30c8\u30c1\u30e5\u30fc\u30cb\u30f3\u30b0\u30eb\u30fc\u30eb\u3092\u8ffd\u52a0\u3057\u307e\u3059\u3002<\/p>\n<p><b>[\u3044\u3064\u8d77\u3053\u308b\u304b:]<\/b><\/p>\n<ul>\n<li>2026\u5e742\u67088\u65e5:\u30eb\u30fc\u30eb\u304c\u30dd\u30fc\u30bf\u30eb(\u30d7\u30ec\u30d3\u30e5\u30fc)\u3067\u95b2\u89a7\u53ef\u80fd\u306b\u306a\u308a\u307e\u3057\u305f\u3002<\/li>\n<li>2026\u5e742\u67088\u65e5\u301c2\u670818\u65e5:\u30eb\u30fc\u30eb\u306f\u8868\u793a\u3055\u308c\u307e\u3059\u304c\u6709\u52b9\u3067\u306f\u306a\u3044\u305f\u3081\u3001\u5fc5\u8981\u306b\u5fdc\u3058\u3066\u78ba\u8a8d\u3057\u3066\u30aa\u30d7\u30c8\u30a2\u30a6\u30c8\u3067\u304d\u307e\u3059\u3002<\/li>\n<li>2026\u5e742\u670818\u65e5:\u30eb\u30fc\u30eb\u304c\u30c7\u30d5\u30a9\u30eb\u30c8\u3067\u6709\u52b9\u3068\u306a\u308a\u307e\u3059\u3002<\/li>\n<\/ul>\n<p><b>[\u3053\u308c\u304c\u3042\u306a\u305f\u306e\u7d44\u7e54\u306b\u3069\u306e\u3088\u3046\u306a\u5f71\u97ff\u3092\u4e0e\u3048\u308b\u304b:]<\/b><\/p>\n<p><b>\u5f71\u97ff\u3092\u53d7\u3051\u308b\u4eba\u7269: <\/b>Microsoft Defender XDR\u3068MDE\u3092\u4f7f\u3063\u3066\u3044\u308b\u7ba1\u7406\u8005\u306b\u3064\u3044\u3066\u3002<\/p>\n<p><b>\u4eca\u5f8c\u306e\u5c55\u958b:<\/b><\/p>\n<p><b><br \/>  <\/b><\/p>\n<ul>\n<li>\u30c7\u30d5\u30a9\u30eb\u30c8\u306e\u4f53\u9a13\u3067\u306f\u3001\u30a4\u30f3\u30b7\u30c7\u30f3\u30c8\u3084\u30a2\u30e9\u30fc\u30c8\u30ad\u30e5\u30fc\u306b\u60c5\u5831\u7684\u307e\u305f\u306f\u4f4e\u91cd\u5ea6\u306e\u30a8\u30f3\u30c9\u30dd\u30a4\u30f3\u30c8\u30a2\u30e9\u30fc\u30c8\u304c\u5c11\u306a\u304f\u3066\u6e08\u3080\u306f\u305a\u3067\u3059\u3002\u306a\u305c\u306a\u3089\u3001\u30de\u30c3\u30c1\u30f3\u30b0\u30a2\u30e9\u30fc\u30c8\u304c\u81ea\u52d5\u7684\u306b\u51e6\u7406\u3055\u308c\u308b\u304b\u3089\u3067\u3059\u3002<\/li>\n<li>\u4e00\u90e8\u306e\u30eb\u30fc\u30eb\u306f <b>Resolve <\/b>\u3092\u4f7f\u3044\u3001\u4ed6\u306e\u30eb\u30fc\u30eb\u306fSet <b>as Behavior<\/b>\u3092\u4f7f\u3063\u3066\u30a2\u30e9\u30fc\u30c8\u3092\u884c\u52d5\u30ec\u30b3\u30fc\u30c9\u3068\u3057\u3066\u518d\u5206\u985e\u3057\u307e\u3059\u3002\u3053\u308c\u3089\u306e\u30a2\u30e9\u30fc\u30c8\u306f\u30aa\u30fc\u30d7\u30f3\u30a2\u30e9\u30fc\u30c8\u30ad\u30e5\u30fc\u306b\u306f\u8868\u793a\u3055\u308c\u307e\u305b\u3093\u3002\u307e\u305f\u3001\u4e8b\u4ef6\u3092\u767a\u751f\u3055\u305b\u305a\u3001\u635c\u67fb\u3084\u72e9\u731f\u306e\u5229\u7528\u53ef\u80fd\u6027\u3092\u4fdd\u3061\u307e\u3059\u3002<\/li>\n<li>\u3042\u306a\u305f\u304c\u30b3\u30f3\u30c8\u30ed\u30fc\u30eb\u3092\u4fdd\u3061\u307e\u3059\u3002\u3059\u3079\u3066\u306e\u7d44\u307f\u8fbc\u307f\u30eb\u30fc\u30eb\u306f<b>Microsoft Defender XDR<\/b><b>&gt;&gt;<\/b><b>Alert Tuning<\/b>\u306e\u8a2d\u5b9a\u3067\u78ba\u8a8d\u3067\u304d\u3001<b>\u3044\u3064\u3067\u3082\u30eb\u30fc\u30eb\u3092\u7121\u52b9\u306b\u3067\u304d\u307e\u3059<\/b>\u3002<\/li>\n<\/ul>\n<p><b>[\u6e96\u5099\u306e\u305f\u3081\u306b\u3067\u304d\u308b\u3053\u3068:]<\/b><\/p>\n<ul>\n<li>\u30c7\u30d5\u30a9\u30eb\u30c8\u306e\u4f53\u9a13\u3092\u671b\u3080\u306a\u3089\u3001\u30a2\u30af\u30b7\u30e7\u30f3\u306f\u4e0d\u8981\u3067\u3059\u3002<\/li>\n<li>2026\u5e742\u67088\u65e5\u304b\u30892\u670818\u65e5\u306e\u9593\u306b\u3001\u65b0\u3057\u3044MDE\u30eb\u30fc\u30eb\u306e\u3044\u305a\u308c\u304b\u3092\u78ba\u8a8d\u30fb\u7121\u52b9\u306b\u3059\u308b\u306b\u306f(\u5f8c\u3067\u7121\u52b9\u5316\u306f\u53ef\u80fd\u3067\u3059\u304c\u30012026\u5e742\u670818\u65e5\u4ee5\u964d\u306f\u30c7\u30d5\u30a9\u30eb\u30c8\u3067\u30eb\u30fc\u30eb\u304c\u6709\u52b9\u306b\u306a\u308a\u307e\u3059)\u3002<\/li>\n<li>\u8907\u6570\u306e\u30c6\u30ca\u30f3\u30c8\u3092\u7ba1\u7406\u3057\u3066\u3044\u308b\u5834\u5408\u3001 <b>\u30de\u30eb\u30c1\u30c6\u30ca\u30f3\u30c8\u7d44\u7e54(MTO)<\/b>\u30b3\u30f3\u30c6\u30f3\u30c4 <b>\u914d\u5e03<\/b>\u3092\u7528\u3044\u3066\u3001\u30eb\u30fc\u30eb\u306e\u6709\u52b9\u5316\u3092\u5927\u898f\u6a21\u306b\u7ba1\u7406\u3067\u304d\u307e\u3059\u3002<\/li>\n<\/ul>\n<p>\u8a73\u3057\u304f\u306f\u3053\u3061\u3089<\/p>\n<ul>\n<li>Microsoft Defender XDR <a href=\"https:\/\/learn.microsoft.com\/en-us\/defender-xdr\/investigate-alerts?tabs=settings#built-in-alert-tuning-rules\" target=\"_blank\">  Alert Tuning<\/a> \u30c9\u30ad\u30e5\u30e1\u30f3\u30c8<\/li>\n<li><a href=\"https:\/\/techcommunity.microsoft.com\/category\/microsoft-defender-xdr\/blog\/microsoftthreatprotectionblog\" target=\"_blank\">\u30c6\u30c3\u30af\u30b3\u30df\u30e5\u30cb\u30c6\u30a3\u30d6\u30ed\u30b0<\/a><\/li>\n<\/ul>\n<p><b>[\u30b3\u30f3\u30d7\u30e9\u30a4\u30a2\u30f3\u30b9\u4e0a\u306e\u8003\u616e\u4e8b\u9805:]<\/b><\/p>\n<p>\u30b3\u30f3\u30d7\u30e9\u30a4\u30a2\u30f3\u30b9\u4e0a\u306e\u8003\u616e\u4e8b\u9805\u306f\u7279\u5b9a\u3055\u308c\u307e\u305b\u3093\u3067\u3057\u305f\u3002\u3042\u306a\u305f\u306e\u7d44\u7e54\u306b\u9069\u3057\u305f\u30ec\u30d3\u30e5\u30fc\u3092\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<\/p>\n<\/td>\n<\/tr>\n<\/tbody>\n<\/table><\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>MC1228325 | (Public Preview) New built in alert tuning rules for Microsoft Defender for Endpoint in Microsoft  [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-14866","post","type-post","status-publish","format-standard","hentry","category-uncategorized"],"_links":{"self":[{"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/posts\/14866","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/comments?post=14866"}],"version-history":[{"count":0,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/posts\/14866\/revisions"}],"wp:attachment":[{"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/media?parent=14866"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/categories?post=14866"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/m365jp.net\/index.php\/wp-json\/wp\/v2\/tags?post=14866"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}