What information can be found in the Real Time Response (RTR) Audit Log?
An inactive host that does not contact the Falcon cloud will be automatically removed from the Host Management and Trash pages after how many days?
A host has been Network contained with Falcon and you have been asked to update the Operating System with zero day patches. You have tried using your patch update systems for this task, but the jobs fail. Which configuration steps in the Falcon UI will allow these activities?
What is an example of when you will need to refer to your Customer ID+ Checksum (CIDC)?
You can create Fusion SOAR workflows to precisely define the actions you want Falcon to perform in response to incidents. Which three items must be defined in every trigger so that it executes successfully?
You have created a new static host group to test a newly created sensor update policy, and need to add 500 servers into the group. You want to upload a list of hosts to Falcon for automatic addition into the group. What file format must the list be for this to be successfully accomplished?
What happens to detections in the console after clicking “Disable Detections” for a host from within the Host Management page?
There are a significant number of false positive detections from your developers that are getting blocked and quarantined by Falcon. What Indicator of Compromise (IOC) action would be the best option?
Where can you find the history of the successes and failures for any Fusion SOAR workflows?
What policy setting should be selected for a new host when it has an existing antivirus?