Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
NetApp logo

NetAppCertified Cyber Resiliency Expert

Domain 1Objective 4

Configure and Monitor Ransomware Detection Alerts CERTIFIED-CYBER-RESILIENCY-EXPERT Practice Questions (Page 2)

Part of the Ransomware Protection and Detection domain, which accounts for 18% of the CERTIFIED-CYBER-RESILIENCY-EXPERT exam. NetApp does not publish an official question count, but from its 90-minute exam (~35–60 total, ~6–11 in this domain), expect 1–2 from this objective — we provide 10 practice questions to prepare you well beyond it. (estimate)

10questions here
2free pages
2concepts
18%of the exam

Questions 6–10

  1. 6application · medium

    A managed service provider (MSP) monitors multiple customer ONTAP clusters. They want to centralize ransomware detection alerts from all clusters into a single SIEM platform. The SIEM supports Syslog and REST API ingestion. What is the most efficient way to configure alert delivery?

    Select an answer first
  2. 7application · medium

    A company's storage administrator receives a ransomware detection alert for a volume. The alert severity is 'warning'. The administrator is busy with another task and decides to ignore the alert. What is the potential risk of this action?

    Select an answer first
  3. 8application · medium

    A hospital's storage administrator receives a ransomware detection alert for a volume containing patient records. The alert is confirmed as a real attack. The administrator has already created a Snapshot copy. What is the NEXT appropriate action?

    Select an answer first
  4. 9application · medium

    A financial services firm receives a ransomware detection alert on a critical database volume. The alert indicates a high rate of file renames and modifications. The administrator has verified the alert is legitimate and not a false positive. What is the FIRST action the administrator should take to mitigate the threat?

    Select an answer first
  5. 10expert · hard

    A company's storage team is responding to a confirmed ransomware attack. They have isolated the affected volume and created a Snapshot copy. The security team wants to analyze the attack pattern to determine the entry point. What should the storage team provide to the security team?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by NetApp. “CERTIFIED-CYBER-RESILIENCY-EXPERT” is a trademark of its owner, used for identification only.