SPLK-5002 Exam Question 26

An engineer has been asked to build a new dashboard after an increase in login failures across the organization's Microsoft Azure domain. They need to construct a search to only display failed logins for their Azure Active Directory users, and choose a visualization that will help analysts quickly identify failed logins that originate outside of North America. Which of the following search and visualization type combinations will achieve this?
  • SPLK-5002 Exam Question 27

    What should a security engineer prioritize when building a new security process?
  • SPLK-5002 Exam Question 28

    Based on this example image, if it is detected that a member has been added to a security- enabled local group, how many risk events will be created?
  • SPLK-5002 Exam Question 29

    A cyber defense engineer plays a role in maintaining a secure SOAR Cloud configuration. Which network security statement is correct about SOAR Cloud?
  • SPLK-5002 Exam Question 30

    Risk scores are associated with how many levels of risk in Enterprise Security by default?