A QRadar analyst wants to limit the time period for which an AOL query is evaluated. Which functions and clauses could be used for this?
What are the behavioral rule test parameter options?
Which parameters are used to calculate the magnitude rating of an offense?
How does a Device Support Module (DSM) function?