Q1. What is the retention requirement for Cortex Data Lake sizing?
A.number of endpoints
B. number of VM-Series NGFW
C. number of days
D. logs per second
Correct Answer: C
Q2. In the DBotScore context field, which context key would differentiate between multiple entries for the same indicator in a multi-TIP environment?
A.Vendor
B. Type
C. Using
D. Brand
Correct Answer: A
Q3. Which feature of Cortex XSIAM displays an entire picture of an attack, including the originating process or delivery point?
A.Sample analysis
B. Correlation rule
C. Causality View
D. Automation playbook
Correct Answer: C
Q4. When analyzing logs for indicators, which are used for only BIOC identification'?
A.observed activity
B. artifacts
C. techniques
D. error messages
Correct Answer: C
$ 39
Reviews
There are no reviews yet.