CCFH-202 Exam Question 6

With Custom Alerts you are able to configure email alerts using predefined templates so you're notified about specific activity in your environment. Which of the following outlines the steps required to properly create a custom alert rule?
  • CCFH-202 Exam Question 7

    The Events Data Dictionary found in the Falcon documentation is useful for writing hunting queries because:
  • CCFH-202 Exam Question 8

    Which field in a DNS Request event points to the responsible process?
  • CCFH-202 Exam Question 9

    What kind of activity does a User Search help you investigate?
  • CCFH-202 Exam Question 10

    A benefit of using a threat hunting framework is that it: