CrowdStrike CCFA-200b - CrowdStrike Falcon Certification Program
Where can you find a list of hosts that have not communicated with the CrowdStrike Cloud?
When troubleshooting a Windows sensor that appears to be installed but is not running, what should be verified to ensure they are installed and running?
What is the primary concern with Windows sensors going into Reduced Functionality Mode?
Which default user role will allow you to see all analyst session details?
What is the recommended approach for managing host groups over time?
Your development team is working on a new enterprise application, but Falcon starts creating alerts during testing. The alert points to C:\Users\Bob\DevCode\felix.dll. In the detection, you see that it is triggering only on a specific Falcon IOA. What action should be taken to resolve this issue?
When would the No Action option be assigned to a hash in IOC Management?
What happens when a Falcon Sensor on a Linux host enters Reduced Functionality Mode?
Which report provides a filterable high-level overview of host information such as OS version, Device Type and Machine Domain, and also provides an active sensor heat map for a quick environment review?
To test a new Falcon sensor version, you have created a new sensor update policy and two separate dynamic host groups. One group contains all test Windows servers. The other group contains all of your Windows servers. The new policy was applied to only the test Windows servers host group. What is required to safely and successfully test your new sensor update policy on only your test Windows servers?
