
FortinetNSE 6 - FortiSIEM Analyst
Domain 2Objective 1
Configure Communication Control Policy NSE6-FORTISIEM-ANALYST Practice Questions (Page 3)
Part of the FortiEDR Security Settings and Policies domain, which makes up ~24% of our current practice bank. Fortinet does not publish an official question count, but from its 70-minute exam (~30–45 total, ~7–11 in this domain), expect 2–3 from this objective — we provide 14 practice questions to prepare you well beyond it. (estimate)
14questions here
3free pages
5concepts
Questions 11–14
- 11
A company is implementing FortiEDR and wants to ensure that endpoints can only communicate with approved internal servers. They plan to use communication control policies. What is the primary benefit of using these policies?
Select an answer first - 12
In a FortiEDR communication rule, what does the 'action' field specify?
Select an answer first - 13
In FortiEDR, to which of the following can a communication control policy be assigned?
Select an answer first - 14
A security operations center (SOC) is monitoring a communication control policy that blocks outbound traffic to known malicious domains. The policy is deployed in 'Block' mode. The SOC receives an alert about an endpoint attempting to connect to a domain that is not on the block list. The domain is later confirmed as malicious. What should the SOC do to prevent future attempts to this domain?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to NSE6-FORTISIEM-ANALYST
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Fortinet. “NSE6-FORTISIEM-ANALYST” is a trademark of its owner, used for identification only.