Fortinet FCP_FAZ_AN-7.6 - Fortinet NSE 5 - FortiAnalyzer 7.6 Analyst
As part of your analysis, you discover that an incident is a false positive.
You change the incident status to Closed: False Positive.
Which statement about your update is true?
Which two actions should an administrator take to vide Compromised Hosts on FortiAnalyzer? (Choose two.)
Which statement about sending notifications with incident update is true?
What is the purpose of using data selectors when configuring event handlers?
As part of your analysis, you discover that a Medium severity level incident is fully remediated.
You change the incident status to Closed:Remediated.
Which statement about your update is true?
What are the two methods you can use to send notifications when an event is generated by an event handler? (Choose two answers)
Exhibit.

What does the data point at 12:20 indicate?
Which FortiAnalyzer feature allows you to use a proactive approach when managing your network security?
When managing incidents on FortiAnlyzer, what must an analyst be aware of?
Which statement about exporting items in Report Definitions is true?
