
Palo Alto NetworksCertified Cybersecurity Apprentice
Domain 6Objective 4
6.4 Explain the Concepts of False Positive Alerts and False Negative Alerts CYBERSECURITY-APPRENTICE Practice Questions (Page 3)
Part of the Security Operations domain, which accounts for 13% of the CYBERSECURITY-APPRENTICE exam.
30questions here
6free pages
7concepts
13%of the exam
Questions 11–15
- 11
A security analyst is reviewing alerts from a network intrusion detection system (NIDS) and notices that it is flagging a large number of connections to a well-known content delivery network (CDN) as malicious. The analyst verifies that the CDN is used by many legitimate websites. What is the most likely cause of these false positives?
Select an answer first - 12
Which of the following is a common cause of false positive alerts?
Select an answer first - 13
A security analyst is reviewing alerts from a web application firewall (WAF) and notices that it is flagging SQL injection attempts on a search box that only accepts numeric input. The analyst verifies that the traffic is legitimate. What is the most likely cause of these false positives?
Select an answer first - 14
A security analyst notices that the intrusion prevention system (IPS) is generating a high volume of alerts for a benign internal application that uses a non-standard port. The alerts are consuming significant time as the analyst manually verifies each one. What is the most effective first step to reduce the noise while maintaining visibility into real threats?
Select an answer first - 15
An attacker uses a technique that is not covered by any of the organization's detection rules. What is the most likely outcome?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “CYBERSECURITY-APPRENTICE” is a trademark of its owner, used for identification only.