
Palo Alto NetworksCertified XDR Analyst
Domain 2Objective 2
2.2 Identify and Analyze Security Events and Incidents XDR-ANALYST Practice Questions (Page 1)
Part of the Incident Handling and Response domain, which accounts for 34% of the XDR-ANALYST exam.
34questions here
7free pages
7concepts
34%of the exam
Questions 1–5
- 1
During an incident investigation, an analyst collects logs, captures memory, and interviews the user who reported the issue. What should the analyst do to ensure the documentation supports the investigation?
Select an answer first - 2
A malware infection on a single workstation has spread to the file server, encrypting files. The organization's backup is from the previous night. What should the analyst include in the impact assessment?
Select an answer first - 3
Which of the following is a key factor to consider when assessing the impact of a security incident?
Select an answer first - 4
Which factor is most important when classifying the severity of a security incident?
Select an answer first - 5
During root cause analysis of a security incident, an analyst traces the event chain back to an unpatched vulnerability in a web application. What is the root cause in this scenario?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “XDR-ANALYST” is a trademark of its owner, used for identification only.