
FortinetNSE 6 - FortiNDR Cloud Analyst
Domain 4Objective 1
Perform Investigations to Detect Threats NSE6-FORTINDR-CLOUD-ANALYST Practice Questions (Page 3)
Part of the Investigations and Integrations domain, which accounts for 20-30% of the NSE6-FORTINDR-CLOUD-ANALYST exam.
27questions here
6free pages
12concepts
20-30%of the exam
Questions 11–15
- 11
What is the primary purpose of analyzing packet captures in FortiNDR Cloud?
Select an answer first - 12
Which detection use case would involve investigating a suspicious email link that led to a credential-harvesting page?
Select an answer first - 13
Which type of data is analyzed when performing packet capture analysis?
Select an answer first - 14
During an investigation, an analyst identifies a suspicious domain that several infected hosts queried. The domain is not present in any internal threat intel feeds. The analyst wants to quickly determine if this domain is associated with known threat actors without leaving the FortiNDR Cloud console. What should the analyst do?
Select an answer first - 15
What does TTP stand for in the context of threat analysis?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Fortinet. “NSE6-FORTINDR-CLOUD-ANALYST” is a trademark of its owner, used for identification only.