最新的Fortinet FCSS - Security Operations 7.4 Analyst - FCSS_SOC_AN-7.4免費考試真題

How does identifying adversary behavior benefit SOC operations in terms of incident response?

正確答案: A
Refer to the exhibits.



The Quarantine Endpoint by EMS playbook execution failed.
What can you conclude from reviewing the playbook tasks and raw logs?

正確答案: A
What is a key consideration when designing a scalable FortiAnalyzer deployment?

正確答案: A
A customer wants FortiAnalyzer to run an automation stitch that executes a CLI command on FortiGate to block a predefined list of URLs, if a botnet command-and-control (C&C) server IP is detected.
Which FortiAnalyzer feature must you use to start this automation process?

正確答案: D
說明:(僅 Fast2test 成員可見)
Exhibit:

Which observation about this FortiAnalyzer Fabric deployment architecture is true?

正確答案: B
說明:(僅 Fast2test 成員可見)
You are managing 10 FortiAnalyzer devices in a FortiAnalyzer Fabric. In this scenario, what is a benefit of configuring a Fabric group?

正確答案: A
Which connector on FortiAnalyzer is responsible for looking up indicators to get threat intelligence?

正確答案: D
Refer to the Exhibit:

An analyst wants to create an incident and generate a report whenever FortiAnalyzer generates a malicious attachment event based on FortiSandbox analysis. The endpoint hosts are protected by FortiClient EMS integrated with FortiSandbox. All devices are logging to FortiAnalyzer.
Which connector must the analyst use in this playbook?

正確答案: D
說明:(僅 Fast2test 成員可見)
When configuring a FortiAnalyzer to act as a collector device, which two steps must you perform? (Choose two.)

正確答案: A,D
說明:(僅 Fast2test 成員可見)

聯系我們

如果您有任何問題,請留下您的電子郵件地址,我們將在12小時內回复電子郵件給您。

我們的工作時間:( GMT 0:00-15:00 )
週一至週六

技術支持: 立即聯繫 

English 日本語 Deutsch 한국어