Multiple company assets were reported by vulnerability scanners as being vulnerable to CVE-2017-11882. This vulnerability affects applications installed on workstations. The SOC team needs to take action and apply the new vulnerability patch that was just released. The team must first create a cause for each of the identified assets in ServiceNow IT Service Management (ITSM), in order to notify the IT department. Next, the team creates a task in the main playbook, which extracts the list of assets from the scanner report.
After the list of assets are created, what are the two solutions that the SOC team could take so that a case could be created and a patch installed? (Choose two.)
What is needed to send a survey with multiple questions to a customer?.
Which of these would be the most operationally efficient repository for moving XSOAR custom content from a development server to a production environment?
Which two methods will allow data to be saved in incident fields within a playbook? (Choose two.)
Which two features can be used together to automatically execute a search on a remote SIEM for extracted IP Indicators? (Choose two.).
Which task type would be used to verify/check that an integration was enabled?
Which of the following is a feature of XSOAR automations?
Which three options can be defined in the layout settings? (Choose three.)
Which feature is used to convert event data values into incident fields when an integration fetches an event?.
An XSOAR engineer has been tasked with exporting all indicators from the production environment in the last 90 days. The final report needs to be in CSV format containing all indicator fields. How can this task be achieved?
|
PDF + Testing Engine
|
|---|
|
$49.5 |
|
Testing Engine
|
|---|
|
$37.5 |
|
PDF (Q&A)
|
|---|
|
$31.5 |
Paloalto Networks Free Exams |
|---|
|