
Palo Alto NetworksCertified XDR Analyst
Domain 2Objective 3
2.3 Respond to Incidents XDR-ANALYST Practice Questions (Page 4)
Part of the Incident Handling and Response domain, which accounts for 34% of the XDR-ANALYST exam.
17questions here
4free pages
3concepts
34%of the exam
Questions 16–17
- 16
A security analyst is responding to a ransomware incident that has affected multiple endpoints. The XDR platform suggests isolating the endpoints, but the affected endpoints are domain controllers. The analyst must balance the need to contain the ransomware with the need to maintain authentication services for the rest of the network. What should the analyst do?
Select an answer first - 17
An analyst is reviewing an incident and wants to see the recommended steps to remediate the identified threat. Where in the XDR console would the analyst find these remediation suggestions?
Select an answer first
Finished these 2 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to XDR-ANALYST
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “XDR-ANALYST” is a trademark of its owner, used for identification only.