
FortinetNSE 6 - FortiNDR Cloud Analyst
Domain 3Objective 2
Implement Detectors NSE6-FORTINDR-CLOUD-ANALYST Practice Questions (Page 1)
Part of the Detection domain, which accounts for 15-25% of the NSE6-FORTINDR-CLOUD-ANALYST exam.
22questions here
5free pages
3concepts
15-25%of the exam
Questions 1–5
- 1
A retail company wants to create a detector to identify 'Lateral Movement' using SMB connections between internal workstations. The security team has already identified a list of 200 internal IPs that should be monitored. Which initial configuration steps are required when creating the new detector?
Select an answer first - 2
A startup company wants to create a detector for 'Suspicious PowerShell' that monitors their development servers. The team has identified 20 server IPs. During the creation process, what is the minimum required information to create a functional detector?
Select an answer first - 3
When managing a run list in FortiNDR Cloud, which action is used to include a new IP address in the detector's scope?
Select an answer first - 4
A manufacturing company has a detector for 'Malware C2' that monitors a mix of IT and OT (operational technology) assets. The OT assets (10.0.1.0/24) are sensitive to false positives and should not be monitored by this detector. The IT assets (10.0.2.0/24) should be monitored. How should the analyst configure the run list?
Select an answer first - 5
In FortiNDR Cloud, what is the purpose of the 'description' field when creating a new detector?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Fortinet. “NSE6-FORTINDR-CLOUD-ANALYST” is a trademark of its owner, used for identification only.