問題1
Which approach allows a rule to test for Active Directory (AD) group membership?
Which approach allows a rule to test for Active Directory (AD) group membership?
正確答案: C
問題2
When QRadar processes an event it extracts normalized properties and custom properties.
Which list includes only Normalized properties?
When QRadar processes an event it extracts normalized properties and custom properties.
Which list includes only Normalized properties?
正確答案: D
問題3
What is the maximum number of supported dashboards for a single user?
What is the maximum number of supported dashboards for a single user?
正確答案: B
說明:(僅 NewDumps 成員可見)
問題4
What is a difference between Rule Actions and Rule Responses?
What is a difference between Rule Actions and Rule Responses?
正確答案: D
問題5
A Security Analyst found multiple connection attempts from suspicious remote IP addresses to a local host on the DMZ over port 80. After checking related events no successful exploits were detected.
Upon checking international documentation, this activity was part of an expected penetration test which requires no immediate investigation.
How can the Security Analyst ensure results of the penetration test are retained?
A Security Analyst found multiple connection attempts from suspicious remote IP addresses to a local host on the DMZ over port 80. After checking related events no successful exploits were detected.
Upon checking international documentation, this activity was part of an expected penetration test which requires no immediate investigation.
How can the Security Analyst ensure results of the penetration test are retained?
正確答案: B
說明:(僅 NewDumps 成員可見)
問題6
What are two default Report Groups? (Choose two.)
What are two default Report Groups? (Choose two.)
正確答案: B,C
問題7
Which QRadar component stores and forwards events from local and remote log sources?
Which QRadar component stores and forwards events from local and remote log sources?
正確答案: D