Download
Security_Operations_7.4_Analyst_Exam_Description.pdf
Question :46
Refer to Exhibit:
A SOC analyst is creating the Malicious File Detected playbook to run when FortiAnalyzer generates a malicious fi le event. The playbook must also update the incident with the malicious file event data.
What must the next task in this playbook be?
A. A local connector with the action Update Asset and Identity
B. A local connector with the action Attach Data to Incident
C. A local connector with the action Run Report
D. A local connector with the action Update Incident
Ans:D
[ add comment ] | permalink | print article | related link |




( 3 / 57 )

Random Entry