Forum Discussion

HmeltonAppDev's avatar
Dec 29, 2021

Vulnerabilities in security configuration on your Windows machines should be remediated

Is there any way to exempt just one of the items under this recommendation?  I want to exempt "Replace a process level token".  It keeps coming back as not remediated because I have the AppPool in the rule which it says is acceptable.  I want this to be green in my secure score.  Thanks

1 Reply

  • mas18's avatar
    mas18
    Brass Contributor
    Exception justifications that affect the scores include 'third party control' and 'alternate mitigation'. Other justifications do not reduce the exposure of a device, and so the exposure score and secure score do not change.

    https://docs.microsoft.com/en-us/microsoft-365/security/defender-endpoint/tvm-exception?view=o365-worldwide

Resources