Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Google Cloud logo

Google CloudProfessional Security Operations Engineer

Domain 4Objective 2

4.2 Leveraging Threat Intelligence for Detection PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER Practice Questions (Page 1)

Part of the Detection engineering domain, which accounts for 22% of the PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER exam.

25questions here
5free pages
7concepts
22%of the exam

Questions 1–5

  1. 1foundation · easy

    A security analyst is designing a scoring scheme to assign risk levels to indicators of compromise (IOCs). Which combination of factors is most appropriate to include when calculating an IOC's risk score?

    Select an answer first
  2. 2application · medium

    A detection rule for 'suspicious PowerShell execution' is generating a high number of alerts. Investigation shows that most alerts are triggered by a legitimate administrative script that runs every hour. The script is used by the IT team for routine maintenance. The SOC wants to reduce the noise without losing visibility into malicious PowerShell activity. What is the most appropriate tuning action?

    Select an answer first
  3. 3foundation · easy

    What is the purpose of flagging high-frequency alerts as likely false positives?

    Select an answer first
  4. 4foundation · easy

    What does measuring alert frequency involve?

    Select an answer first
  5. 5foundation · easy

    What is the primary goal of automating IOC ingestion and update from threat intelligence feeds?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Google Cloud. “PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER” is a trademark of its owner, used for identification only.