Fortinet FCSS_ADA_AR-6.7 - FCSS-Advanced Analytics 6.7 Architect Exam

Page:    1 / 12   
Total 59 questions

Click on the calculator button.
A service provider purchases a licensed EPS of 520. The guaranteed EPS allocated to three customers is 50, 100, and 150 respectively. At the end of every three-minute interval, incoming EPS is calculated at every collector and the value is sent to the central decision-making engine on the supervisor node.
The incoming EPS for the first collector is 25. the incoming EPS for the second collector is 50, and the incoming EPS for the third collector is 75.
Based on the information provided, what is the unused events total calculated by the supervisor?

  • A. 76.000
  • B. 85.960
  • C. 75.960
  • D. 71.460


Answer : D

Which statement accurately contrasts lookup tables with watchlists?

  • A. Lookup table values age out after a period, whereas watchlist values do not have any time condition.
  • B. You can populate lookup tables through an incident, whereas you cannot populate watchlists through an incident.
  • C. Lookup tables can contain multiple columns, whereas watchlists contain only a single column.
  • D. You can reference lookup table data in analytic queries and reports almost immediately, whereas you may have to wait up to 5-10 minutes for watchlist entries to be useable in queries and reports.


Answer : C

Refer to the exhibit.

How long has the UEBA agent been operationally down?

  • A. 2 Hours
  • B. 20 Hours
  • C. 21 Hours
  • D. 9 Hours


Answer : B

How can you empower SOC by deploying FortiSOAR? (Choose three.)

  • A. Collaborative knowledge sharing
  • B. Aggregate logs from distributed systems
  • C. Address analyst skills gap
  • D. Baseline user and traffic behavior
  • E. Reduce human error


Answer : ACE

Refer to the exhibit.

This is an example of a baseline profile that is configured in the backend of FortiSIEM.
Which two Group By attributes are configured for this profile? (Choose two.)

  • A. Logon Failure
  • B. Reporting Device
  • C. Reporting IP
  • D. Distinct User


Answer : BC

Page:    1 / 12   
Total 59 questions