<< Prev Question Next Question >>

Question 28/29

An OT administrator is defining an incident notification policy using FortiSIEM and would like to configure the system with a notification policy. If an incident occurs, the administrator would like to be able to intervene and block an IP address or disable a user in Active Directory from FortiSIEM. Which step must the administrator take to achieve this task?

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (29q)
Question 1: What are two critical tasks the OT network auditors must per...
Question 2: In a wireless network integration, how does FortiNAC obtain ...
Question 3: Refer to the exhibit. The IPS profile is added on all of the...
Question 4: A supervisor is configuring a software switch on a FortiGate...
Question 5: An OT network consists of multiple FortiGate devices. The ed...
Question 6: Refer to the exhibit. An OT administrator ran a report to id...
Question 7: Refer to the exhibit. In order for a FortiGate device to act...
Question 8: Which two statements about FortiSIEM are true? (Choose two.)...
Question 9: Which two statements about the Modbus protocol are true? (Ch...
Question 10: An OT supervisor has configured LDAP and FSSO for the authen...
Question 11: An OT architect has deployed a Layer 2 switch in the OT netw...
Question 12: Which three methods of communication are used by FortiNAC to...
Question 13: You are investigating a series of incidents that occurred in...
Question 14: Refer to the exhibit. You are navigating through FortiSIEM i...
Question 15: An OT administrator deployed many devices to secure the OT n...
Question 16: You are investigating a series of incidents that occurred in...
Question 17: Refer to the exhibit. You need to configure VPN user access ...
Question 18: Which three device profiling methods of FortiNAC are conside...
Question 19: With the limit of using one firewall device, the administrat...
Question 20: FortiAnalyzer is implemented in the OT network to receive lo...
Question 21: Which two statements about FortiSIEM are true? (Choose two.)...
Question 22: A FortiGate device is newly deployed as the edge gateway of ...
Question 23: What can be assigned using network access control policies?...
Question 24: Which three Fortinet products can be used for device identif...
Question 25: Which statement is correct about processing matched rogue de...
Question 26: What is the main difference between real-time logs and histo...
Question 27: Which type of attack posed by skilled and malicious users of...
Question 28: An OT administrator is defining an incident notification pol...
Question 29: The OT network analyst run different level of reports to qui...