
Palo Alto NetworksCertified XSOAR Engineer
Domain 5Objective 2
5.2 Explain Indicator Creation Methods XSOAR-ENGINEER Practice Questions (Page 2)
Part of the Threat Intelligence Management domain, which accounts for 18% of the XSOAR-ENGINEER exam.
26questions here
6free pages
7concepts
18%of the exam
Questions 6–10
- 6
Which of the following is an automated method for creating indicators in XSOAR?
Select an answer first - 7
A security engineer wants to automate the creation of indicators in XSOAR from an external threat intelligence platform. The engineer has an API key with appropriate permissions and wants to push a single new malicious domain to XSOAR as soon as it is discovered. Which approach should the engineer use?
Select an answer first - 8
An analyst is manually creating an indicator for a file hash. The analyst notices that the hash is already in XSOAR but with a different file name. The analyst wants to add the new file name to the existing indicator without changing the hash value. What is the best way to do this?
Select an answer first - 9
What is required to create an indicator via the XSOAR API?
Select an answer first - 10
In the XSOAR interface, where would an analyst go to manually create a single indicator?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “XSOAR-ENGINEER” is a trademark of its owner, used for identification only.