
FortinetNSE 6 - FortiNDR Cloud Analyst
Domain 4Objective 1
Perform Investigations to Detect Threats NSE6-FORTINDR-CLOUD-ANALYST Practice Questions (Page 5)
Part of the Investigations and Integrations domain, which accounts for 20-30% of the NSE6-FORTINDR-CLOUD-ANALYST exam.
27questions here
6free pages
12concepts
20-30%of the exam
Questions 21–25
- 21
During an investigation, an analyst wants to enrich an alert with details about the affected user, device, and network. Which technique is used to collect this contextual information?
Select an answer first - 22
Which DNS record type is used to map a domain name to an IPv6 address?
Select an answer first - 23
What is the purpose of creating a timeline during an incident investigation?
Select an answer first - 24
Which activity is an example of gathering contextual information about an affected asset during an investigation?
Select an answer first - 25
Which search setting in FortiNDR Cloud allows an analyst to include only specific telemetry sources, such as network or endpoint logs, in an investigation?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Fortinet. “NSE6-FORTINDR-CLOUD-ANALYST” is a trademark of its owner, used for identification only.