Question 16

The customer has indicated they need EDR data collection capabilities, which Cortex XDR license is required?
  • Question 17

    When integrating with Splunk, what will allow you to push alerts into Cortex XSOAR via the REST API?
  • Question 18

    Which process in the causality chain does the Cortex XDR agent identify as triggering an event sequence?
  • Question 19

    Which CLI query would bring back Notable Events from Splunk?
    A)

    B)

    C)

    D)
  • Question 20

    What is the retention requirement for Cortex Data Lake sizing?