exam questions

Exam NSE5_EDR-5.0 All Questions

View all questions & answers for the NSE5_EDR-5.0 exam

Exam NSE5_EDR-5.0 topic 1 question 16 discussion

Actual exam question from Fortinet's NSE5_EDR-5.0
Question #: 16
Topic #: 1
[All NSE5_EDR-5.0 Questions]

What is the purpose of the Threat Hunting feature?

  • A. Execute playbooks to isolate affected collectors in the organization
  • B. Find and delete all instances of a known malicious file or hash in the organization
  • C. Delete any file from any collector in the organization
  • D. Identify all instances of a known malicious file or hash and notify affected users
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Agent1994
Highly Voted 1 year, 11 months ago
B FortiEDR 5.0 Study Guide 174 "Threat hunting allows management console users to find and remediate dormant threats before they execute. Essentially it’s a search and destroy operation."
upvoted 8 times
...
burcurt21
Most Recent 1 month ago
Selected Answer: D
The primary purpose of Threat Hunting is to identify threats by detecting their presence (via hashes, IOCs, or other signals) within an organization's network. While the feature can identify instances of malware and compromised files, the actual removal or deletion from endpoints typically requires manual investigation or remediation playbooks, not automatic deletion by Threat Hunting itself​
upvoted 1 times
...
DataConsult
4 months, 2 weeks ago
B is the correct answer
upvoted 1 times
...
Latrel
1 year, 1 month ago
the correct answer is B
upvoted 1 times
...
thinasci01
1 year, 3 months ago
the correct answer is B
upvoted 1 times
...
Adancorrea
1 year, 8 months ago
Selected Answer: B
B - Correct answer
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago