Fortinet
NSE5_EDR-5.0
Q1:
Which two statements about the FortiEDR solution are true? (Choose two.)
☐
A
It provides pre-infection and post-infection protection☐
B
It is Windows OS only☐
C
It provides central management☐
D
It provides pant-to-point protection
Fortinet
NSE5_EDR-5.0
Q2:
Which security policy has all of its rules disabled by default?
○
A
Device Control○
B
Ransomware Prevention○
C
Execution Prevention○
D
Exfiltration Prevention
Fortinet
NSE5_EDR-5.0
Q3:
Which FortiEDR component is required to find malicious files on the entire network of an organization?
○
A
FortiEDR Aggregator○
B
FortiEDR Central Manager○
C
FortiEDR Threat Hunting Repository○
D
FortiEDR Core
Fortinet
NSE5_EDR-5.0
Q4:
Which scripting language is supported by the FortiEDR action managed?
○
A
TCL○
B
Python○
C
Perl○
D
Bash
Fortinet
NSE5_EDR-5.0
Q5:
A FortiEDR security event is causing a performance issue with a third-parry application. What must you do first about the event?
○
A
Contact Fortinet support○
B
Terminate the process and uninstall the third-party application○
C
Immediately create an exception○
D
Investigate the event to verify whether or not the application is safe