
Palo Alto NetworksCertified XDR Analyst
Domain 3Objective 5
3.5 Identify, Hunt, and Investigate Leads and Indicators of Compromise (IOCs) XDR-ANALYST Practice Questions (Page 6)
Part of the Data Analysis domain, which accounts for 28% of the XDR-ANALYST exam.
29questions here
6free pages
5concepts
28%of the exam
Questions 26–29
- 26
What is the primary purpose of proactive hunting for indicators of compromise (IOCs)?
Select an answer first - 27
Which data source would be most useful when hunting for indicators of compromise (IOCs) related to network communication?
Select an answer first - 28
During a hunt, an analyst finds a file hash that is associated with a known ransomware family. The hash is also present in a public sandbox report that shows the ransomware encrypting files. The analyst wants to determine if the company is at risk. Which additional information would be most useful?
Select an answer first - 29
A security analyst is reviewing a list of potential IOCs from a threat intelligence feed. Which item is a behavioral indicator of compromise?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to XDR-ANALYST
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “XDR-ANALYST” is a trademark of its owner, used for identification only.