Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

CCFA Study

Rating
-
Sold
-
Pages
9
Grade
A+
Uploaded on
20-08-2024
Written in
2024/2025

Exam study book Advanced Therapy of Inflammatory Bowel Disease, Volume 2 of Theodore M. Bayless, Stephen B. Hanauer - ISBN: 9781607952176 (CCFA Study)

Institution
Course

Content preview

CCFA Study

Which of the following is TRUE of the Logon Activities Report?
A. The report can be filtered by computer name
B. It only gives a summary of the last logon activity for users
C. Shows a graphical view of user logon activity and hosts the user connected to
D. It gives a detailed list of all logon activity for users - ANSWER: B. It only gives a
summary of the last logon activity for users

When creating an API client, which of the following must be saved immediately since it
cannot be viewed again after the client is created?
A. Client name
B. Base URL
C. Secret
D. Client ID - ANSWER: C. Secret

Which RTR role is automatically assigned to the Falcon Administrator?
A. No RTR roles are automatically assigned to the Falcon Admin
B. Active responder
C. Read Only Analyst
D. Administrator - ANSWER: A. No RTR roles are automatically assigned to the Falcon
Admin

What are custom alerts based on?
A. Custom event based triggers
B. User defined Splunk queries
C. Predefined alert templates
D. Custom workflows - ANSWER: C. Predefined alert templates

What must an admin do to reset a user's password? - ANSWER: User Management ->
Reset Password on 3 dot menu

What is true about sensor install files?
A. Once a sensor is installed once, it never needs to be updated again
B. New install files are made available every Tuesday
C. The same sensor executable is used in all environments
D. A new installer executable is made available for each new version - ANSWER: D. A
new installer executable is made available for each new version

You are attempting to install the Falcon sensor on a host with a slow internet, and install
fails after 20 mins, Which of the following parameters can be used to override the 20
minute default provisioning window?

, A. Timeout=0
B. ExtendedWindow=1
C. Timeout=30
D. ProvNoWait=1 - ANSWER: D. ProvNoWait=1

What role will allow someone to manage quarantine files? - ANSWER: Falcon Security
Lead

When sensor grouping tags applied? - ANSWER: At sensor installation

What is the correct order for manually installing a Falcon Package on a macOS system?
- ANSWER: Install the Falcon package, then register the Falcon Sensor via command
line

Under the "Next-Gen Antivirus: Cloud Machine Learning" setting there are two
categories, one of them is "Cloud Anti-Malware" and the other is:
A. Adware and PUP
B. Execution Blocking
C. Anti-Malware Sensor
D. Advanced machine learning - ANSWER: D. Advanced machine learning

Provided with a list of 100 hashes that are not malicious but your company has deemed
them to be inappropriate for work computers. They have asked you to ensure that they
are not allowed to run in your environment. You have chosen to use Falcon to do this.
What is the best way to accomplish this? - ANSWER: Under IOC management, gather
the list of SHA256 or MD5 hashes for each binary and then upload them. Set all hashes
to "block" and ensure that the prevention policy these computers are using includes the
option for "custom blocking" under execution blocking

You are evaluating the most appropriate Prevention Policy Machine Learning slider
settings for your environment. In your testing phase, you configure the Detection slider
as Aggressive. After running the sensor with this configuration for 1 week of testing,
which Audit report should you review to determine the best Machine Learning slider
settings for your organization? - ANSWER: Machine-Learning Prevention Monitoring

When installing the sensor, what should you ensure for it to complete the provisioning
process? - ANSWER: The host can communicate with the Falcon Cloud regardless of
the OS platform

How can a Falcon Admin configure a popup message to be displayed on a host when
the Falcon sensor blocks, kills, or quarantines an activity?
A. By selecting "enable popup messages" from the User config page
B. By ensuring each user as set the "popups allowed" in their user profile config page
C. By enabling "upload quarantined files" in the General Settings configuration page

Connected book

Written for

Course

Document information

Uploaded on
August 20, 2024
Number of pages
9
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$18.49
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF


Also available in package deal

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
maxmaxwellmm254 University College Maastricht
Follow You need to be logged in order to follow users or courses
Sold
9
Member since
1 year
Number of followers
1
Documents
839
Last sold
7 months ago
EXCELLENT HOMEWORK

EXCELLENT HOMEWORK HELP AND TUTORING ,ALL KIND OF QUIZ AND EXAMS WITH GUARANTEE OF A EXCELLENT HOMEWORK HELP AND TUTORING ,ALL KIND OF QUIZ AND EXAMS WITH GUARANTEE OF A Am an expert on major courses especially; psychology,Nursing, Human resource Management and Mathemtics Assisting students with quality work is my first priority. I ensure scholarly standards in my documents and that's why i'm one of the BEST GOLD RATED TUTORS in STUVIA. I assure a GOOD GRADE if you will use my work.

Read more Read less
4.9

135 reviews

5
123
4
11
3
0
2
0
1
1

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions