Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Fortinet logo

FortinetNSE 6 - FortiNDR Cloud Analyst

Domain 3Objective 2

Implement Detectors NSE6-FORTINDR-CLOUD-ANALYST Practice Questions (Page 4)

Part of the Detection domain, which accounts for 15-25% of the NSE6-FORTINDR-CLOUD-ANALYST exam.

22questions here
5free pages
3concepts
15-25%of the exam

Questions 16–20

  1. 16application · medium

    A media company has a detector for 'Phishing' that monitors a set of 50 IPs. A new employee is hired and assigned a workstation with IP 10.2.3.4. The security team wants to ensure the new workstation is monitored. What is the most appropriate action?

    Select an answer first
  2. 17foundation · easy

    Which setting in FortiNDR Cloud directly controls how strict a detector is when deciding whether to generate an alert?

    Select an answer first
  3. 18expert · hard

    A security architect is designing a detection strategy for a multi-tenant environment. The architect needs to create a detector for 'Exfiltration' that monitors only the tenants that have opted into the service. Each tenant has a set of IPs. The architect wants to minimize false positives by using different sensitivity levels per tenant. What is the best approach?

    Select an answer first
  4. 19expert · hard

    A large enterprise has a detector for 'Beaconing' that monitors 500 IPs across multiple departments. The security team is receiving too many alerts from the marketing department, which uses a legitimate scheduling tool that generates periodic traffic. The team needs to reduce false positives from marketing without reducing detection sensitivity for other departments. What is the best approach?

    Select an answer first
  5. 20expert · hard

    A financial institution has a detector for 'Anomalous Outbound Traffic' that monitors a set of 300 IPs. The security team notices that the detector is not alerting on a compromised server (10.5.5.50) that is sending large amounts of data to an external IP. The server is in the run list. What is the most likely reason the detector is not alerting?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Fortinet. “NSE6-FORTINDR-CLOUD-ANALYST” is a trademark of its owner, used for identification only.