NSE5_EDR-5.0 Actual Exam Questions

Last updated on Dec. 22, 2024.
Vendor:Fortinet
Exam Code:NSE5_EDR-5.0
Exam Name:Fortinet NSE 5 - FortiEDR 5.0
Exam Questions:44
 

Topic 1 - Exam A

Question #1 Topic 1

What is true about classifications assigned by Fortinet Cloud Service (FCS)?

  • A. FCS revises the classification of the core based on its database.
  • B. The core only assigns a classification if FCS is not available.
  • C. FCS is responsible for all classifications.
  • D. The core is responsible for all classifications if FCS playbooks are disabled.
Reveal Solution Hide Solution   Discussion   8

Correct Answer: C 🗳️

Question #2 Topic 1

Based on the forensics data shown in the exhibit, which two statements are true? (Choose two.)

  • A. The device cannot be remediated.
  • B. The execution prevention policy has blocked this event.
  • C. The event was blocked because the certificate is unsigned.
  • D. Device C8092231196 has been isolated.
Reveal Solution Hide Solution   Discussion   5

Correct Answer: AB 🗳️

Question #3 Topic 1

Refer to the exhibit.

Based on the event shown in the exhibit, which two statements about the event are true? (Choose two.)

  • A. The NGAV policy has blocked TestApplication.exe.
  • B. FCS classified the event as malicious.
  • C. TestApplication.exe is sophisticated malware.
  • D. The user was able to launch TestApplication.exe.
Reveal Solution Hide Solution   Discussion   10

Correct Answer: CD 🗳️

Question #4 Topic 1

How does FortiEDR implement post-infection protection?

  • A. By insurance against ransomware
  • B. By preventing data exfiltration or encryption even after a breach occurs
  • C. By real-time filtering to prevent malware from executing
  • D. By using methods used by traditional EDR
Reveal Solution Hide Solution   Discussion   7

Correct Answer: B 🗳️

file Viewing page 1 out of 11 pages.
Viewing questions 1-4 out of 44 questions
Next Questions
Browse atleast 50% to increase passing rate cup
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago