Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free Fortinet NSE5_EDR-5.0 Practice Exam with Questions & Answers

Questions 1

Which security policy has all of its rules disabled by default?

Options:
A.

Device Control

B.

Ransomware Prevention

C.

Execution Prevention

D.

Exfiltration Prevention

Fortinet NSE5_EDR-5.0 Premium Access
Questions 2

Refer to the exhibit.

NSE5_EDR-5.0 Question 2

Based on the threat hunting query shown in the exhibit which of the following is true?

Options:
A.

RDP connections will be blocked and classified as suspicious

B.

A security event will be triggered when the device attempts a RDP connection

C.

This query is included in other organizations

D.

The query will only check for network category

Questions 3

An administrator finds a third party free software on a user's computer mat does not appear in me application list in the communication control console

Which two statements are true about this situation? (Choose two)

Options:
A.

The application is allowed in all communication control policies

B.

The application is ignored as the reputation score is acceptable by the security policy

C.

The application has not made any connection attempts

D.

The application is blocked by the security policies

Questions 4

Which two types of remote authentication does the FortiEDR management console support? (Choose two.)

Options:
A.

Radius

B.

SAML

C.

TACACS

D.

LDAP

Questions 5

Which two statements about the FortiEDR solution are true? (Choose two.)

Options:
A.

It provides pre-infection and post-infection protection

B.

It is Windows OS only

C.

It provides central management

D.

It provides pant-to-point protection

Questions 6

Refer to the exhibits.

NSE5_EDR-5.0 Question 6

NSE5_EDR-5.0 Question 6

The exhibits show application policy logs and application details Collector C8092231196 is a member of the Finance group

What must an administrator do to block the FileZilia application?

Options:
A.

Deny application in Finance policy

B.

Assign Finance policy to DBA group

C.

Assign Finance policy to Default Collector Group

D.

Assign Simulation Communication Control Policy to DBA group

Questions 7

A company requires a global communication policy for a FortiEDR multi-tenant environment.

How can the administrator achieve this?

Options:
A.

An administrator creates a new communication control policy and shares it with other organizations

B.

A local administrator creates new a communication control policy and shares it with other organizations

C.

A local administrator creates a new communication control policy and assigns it globally to all organizations

D.

An administrator creates a new communication control policy for each organization

Questions 8

Which threat hunting profile is the most resource intensive?

Options:
A.

Comprehensive

B.

Inventory

C.

Default

D.

Standard Collection

Questions 9

Which scripting language is supported by the FortiEDR action managed?

Options:
A.

TCL

B.

Python

C.

Perl

D.

Bash