Labour Day Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Fortinet NSE5_EDR-5.0 Dumps

Fortinet NSE 5 - FortiEDR 5.0 Exam Questions and Answers

Question 1

FortiXDR relies on which feature as part of its automated extended response?

Options:

A.

Playbooks

B.

Security Policies

C.

Forensic

D.

Communication Control

Question 2

Which scripting language is supported by the FortiEDR action managed?

Options:

A.

TCL

B.

Python

C.

Perl

D.

Bash

Question 3

What is the benefit of using file hash along with the file name in a threat hunting repository search?

Options:

A.

It helps to make sure the hash is really a malware

B.

It helps to check the malware even if the malware variant uses a different file name

C.

It helps to find if some instances of the hash are actually associated with a different file

D.

It helps locate a file as threat hunting only allows hash search

Question 4

Refer to the exhibit.

Based on the threat hunting query shown in the exhibit which of the following is true?

Options:

A.

RDP connections will be blocked and classified as suspicious

B.

A security event will be triggered when the device attempts a RDP connection

C.

This query is included in other organizations

D.

The query will only check for network category