Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

Fortinet Certification

Rating
-
Sold
-
Pages
6
Grade
A+
Uploaded on
22-08-2024
Written in
2024/2025

Attack Surface - answer-Any place in an environment a bad actor can gain entry or extract something of value What are some Attack Surface vulnerabilities? - answer-computer systems, networks, servers, data centers, a variety of cloud services, employees, customers and business partners. What is ISS Fortinet OS upgrades advantage? - answer-ISS has most up to date software update of any MSSP, unlocking security and SD WAN features not requiring additional cost to the customer Digital Transformation - answer-The integration of digital technology into all areas of business How does digital transformation change business? - answer-it results in a fundamental change to how a business operates, and how they deliver value to their customers Security transformation - answer-with Digital transformation taking place of as or more importance is your security transformation needing a security architecture providing continuous trust Challenges to security transformation? - answer-Broader attack surface with ongoing rang of new devices and cloud services, and NEW REGULATIONS What is the average company using in digital solutions? - answer-Over 30 different software, hardware, cloud and management consoles even before the digital transformation is complete IT teams struggle with security? - answer-The noise of shear number of components and changes to regulations what percentage of companies had to hire more Jr Cyber experts? - answer-41%, and had to be junior because of lack of staff in the industy is security a dynamic state - answer-yes Fortinet security fabric has - answer-Broad visibility over attack surface, Integrate detection of threats, and automated response and continuous trust assessments Sandbox - answer-If unexpected happens it puts in sanbox so onoy effects those 4 walls. - To observe activity of unknown code and quarentine so no harm can be done. - Sandbox lets it run to observe attributes History before sandbox - answer-there was the typical push & pull arms race of one upman ship of patching new found vulnerabilities . - Sanbox originally was silo, so if coordinated attack they didn't talk Evasion techniques - Sandbox - answer-attackers will try to show as benign for a time to be released. -Key is for sandbox to act as much like the users network to not reveal in sandbox. - comprehensive emulator and performance. Must be completely integrated to share threat intelligence 'zero day' attack - sandbox - answer-exploiting an unknown deficiency in code. Before Sandbox no way to stop it, FW and anitvirus only stop known threats Secure Email Gateway or SEG - answer-added - anitvirus, threat emulation and sandboxing to dtect malicous attachments in real time. - more automation has been added to reduce overwhelming SOC teams - Fortimail integrates under single pain of glass Phishing - answer-Coined by AOL, creating phony account tricking people to give money or information - close domain names to click link that contained malware -preys on human iatete, distraction Spam fliters - answer-developed spam mail filter, identified certain terms or headers Sender policy framework - answer-- 2014 bacem standare - authentication method identifies bogus sender addfesses and emails - bad actors introduced new every time, easy to outsmart 2004 - 176 unique phishing attacks identified 2012 - 28,000 had been with 500 million loss SIEM - answer-Security Information and Event Management -aggregate logs from many sources for analysis and pattern -Monitor correlate and alert in real-time - Updated with new toolset -UEBA, Threat Intelligence, historical and real-time analytics & MAchine learning SIEM must... - answer-Monitor, Correlate and notify of events Store Log Data to satisfy auditing requirements Aggregate logs from man different network sources Machine learning - SIEM - answer-Automatically responds and remediates, with self learning. creates topology of users servies and normal network behavior. UEBA -User and Entity Behavioral analytics - answer- SIEM history - answer-Deal with IPS /IDS events, and to keep up with compliance regulations. Evolved from information platform, to threat intelligence center, to a fully integrated and automated center Compliance Regulations - SIEM - answer-PCI - Payment Card Industry Sarbanes-Oxly Act 2002 HIPAA - Health Insurance Portability + Accountability Act GDPR 2018 - General Data Protection Regulation SIEM detect configuaration cahnges and display what changed - answer-great for compliance reporting Active X FortiSIEM windows agent can prodcue changes Business services dashboard - viduall monitor and drill down -alerts on incidents Gains network topology by - - By using a built-in self-learning, real-time asset discovery and device configuration engine RealTime Analytics - only vender with distructed real-time based on UEBA and machine learning - Mitigation libraries - when enabled trigger an automated response, applied to devices on all types - Asess com

Show more Read less
Institution
Fortinet Certification
Course
Fortinet Certification

Content preview

Fortinet Certification
Attack Surface - answer-Any place in an environment a bad actor can gain
entry or extract something of value

What are some Attack Surface vulnerabilities? - answer-computer systems,
networks, servers, data centers, a variety of cloud services, employees,
customers and business partners.

What is ISS Fortinet OS upgrades advantage? - answer-ISS has most up to
date software update of any MSSP, unlocking security and SD WAN features
not requiring additional cost to the customer

Digital Transformation - answer-The integration of digital technology into all
areas of business

How does digital transformation change business? - answer-it results in a
fundamental change to how a business operates, and how they deliver value
to their customers

Security transformation - answer-with Digital transformation taking place of
as or more importance is your security transformation needing a security
architecture providing continuous trust

Challenges to security transformation? - answer-Broader attack surface with
ongoing rang of new devices and cloud services, and NEW REGULATIONS

What is the average company using in digital solutions? - answer-Over 30
different software, hardware, cloud and management consoles even before
the digital transformation is complete

IT teams struggle with security? - answer-The noise of shear number of
components and changes to regulations

what percentage of companies had to hire more Jr Cyber experts? - answer-
41%, and had to be junior because of lack of staff in the industy

is security a dynamic state - answer-yes

Fortinet security fabric has - answer-Broad visibility over attack surface,
Integrate detection of threats, and automated response and continuous trust
assessments

Sandbox - answer-If unexpected happens it puts in sanbox so onoy effects
those 4 walls.

, - To observe activity of unknown code and quarentine so no harm can be
done.
- Sandbox lets it run to observe attributes

History before sandbox - answer-there was the typical push & pull arms race
of one upman ship of patching new found vulnerabilities .
- Sanbox originally was silo, so if coordinated attack they didn't talk

Evasion techniques - Sandbox - answer-attackers will try to show as benign
for a time to be released.
-Key is for sandbox to act as much like the users network to not reveal in
sandbox.
- comprehensive emulator and performance. Must be completely integrated
to share threat intelligence

'zero day' attack - sandbox - answer-exploiting an unknown deficiency in
code. Before Sandbox no way to stop it, FW and anitvirus only stop known
threats

Secure Email Gateway or SEG - answer-added - anitvirus, threat emulation
and sandboxing to dtect malicous attachments in real time.
- more automation has been added to reduce overwhelming SOC teams
- Fortimail integrates under single pain of glass

Phishing - answer-Coined by AOL, creating phony account tricking people to
give money or information
- close domain names to click link that contained malware
-preys on human iatete, distraction

Spam fliters - answer-developed spam mail filter, identified certain terms or
headers

Sender policy framework - answer-- 2014 bacem standare - authentication
method identifies bogus sender addfesses and emails
- bad actors introduced new every time, easy to outsmart
2004 - 176 unique phishing attacks identified
2012 - 28,000 had been with 500 million loss

SIEM - answer-Security Information and Event Management
-aggregate logs from many sources for analysis and pattern
-Monitor correlate and alert in real-time
- Updated with new toolset
-UEBA, Threat Intelligence, historical and real-time analytics & MAchine
learning

SIEM must... - answer-Monitor, Correlate and notify of events

Written for

Institution
Fortinet Certification
Course
Fortinet Certification

Document information

Uploaded on
August 22, 2024
Number of pages
6
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$9.49
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
TOPDOCTOR Abacus College, Oxford
Follow You need to be logged in order to follow users or courses
Sold
10
Member since
2 year
Number of followers
5
Documents
3395
Last sold
8 months ago
TOPGRADER!!

Looking for relevant and updated study material to help you ace your exams? TOPTIERGRADES has your back!!! I have essential exams, test-banks, study bites, assignments all graded A+, Have Complete solutions, and are updated regularly. Please feel free to message me if you are looking for a specific test bank that is not listed on my profile or want a test bank or exam sent to you directly as google doc link. In the event that any of the materials have an issue, please let me know and I\'ll do my best to resolve it or provide an alternative. Thank You & All The Very BEST!!!!!

Read more Read less
5.0

1 reviews

5
1
4
0
3
0
2
0
1
0

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions