CCSE-204 Exam Question 6

A Falcon Log Collector has been configured with 4 sinks of type memory, each having a queue size of 2GB.
What is the minimum memory requirement produced by this configuration?
  • CCSE-204 Exam Question 7

    An event has the following fields:

    Which CQL query will output the frequency of a unique set of ComputerName, UserName, CommandLine?
  • CCSE-204 Exam Question 8

    You are reviewing a lookup file to determine whether an event was successfully parsed during ingestion.
    Which metadata field indicates the event's parsing status?
  • CCSE-204 Exam Question 9

    You want a Next-Gen SIEM dashboard to update automatically when new data is available.
    Which action would you take?
  • CCSE-204 Exam Question 10

    What dashboard presents a view of third-party data ingestion over the past 30 days?