exam questions

Exam NSE5_FAZ-7.0 All Questions

View all questions & answers for the NSE5_FAZ-7.0 exam

Exam NSE5_FAZ-7.0 topic 1 question 2 discussion

Actual exam question from Fortinet's NSE5_FAZ-7.0
Question #: 2
Topic #: 1
[All NSE5_FAZ-7.0 Questions]

Refer to the exhibit.

Which statement is correct regarding the event displayed?

  • A. An incident was created from this event.
  • B. The security risk was blocked or dropped.
  • C. The security event risk is considered open.
  • D. The risk source is isolated.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
PiotrSwi
10 months, 1 week ago
Selected Answer: B
B - Correct.
upvoted 1 times
...
MaxTalin
11 months ago
Selected Answer: B
B is correct
upvoted 1 times
...
omega_raid
1 year, 1 month ago
B is correct. Took exam on 23rd Oct and this question did arise on the exam.
upvoted 2 times
...
chyeahhh
1 year, 5 months ago
I had a similar question to this today (6/15), but instead of "mitigated" the event said "unhandled".
upvoted 2 times
myrmidon3
10 months, 3 weeks ago
Unhandled: If the event is risk is not mitigated or contained, so it is considered open. In this case, the action = pass will have the event status Unhandled. FAZ Analyst 7.2 Study Guide page 111
upvoted 1 times
...
Reque1
1 year, 4 months ago
me too, Did you pass the exam?
upvoted 2 times
...
...
ckl55995
1 year, 9 months ago
Selected Answer: B
B is correct
upvoted 1 times
...
nerostart
1 year, 11 months ago
Selected Answer: B
B is correct
upvoted 2 times
...
nerostart
1 year, 11 months ago
B is correct
upvoted 1 times
...
lucient
1 year, 11 months ago
Selected Answer: B
B) FortiAnalyzer_7.0_Study_Guide-Online.pdf page 206: Mitigated: The security risk is mitigated by being blocked or dropped. For example, an IPS/AV log with action=block/drop will have the event status Mitigated.
upvoted 1 times
...
ZakySama
1 year, 12 months ago
Selected Answer: B
B is correct
upvoted 1 times
...
dvalsa
2 years ago
Selected Answer: B
Answer B.
upvoted 1 times
...
Khs01
2 years ago
Selected Answer: B
B is correct
upvoted 1 times
...
morzart2025
2 years ago
Answer is B. Events in FortiAnalyzer will be in one of four statuses. The current status will determine if more actions need to be taken by the security team or not. The possible statuses are: Unhandled: The security event risk is not mitigated or contained, so it is considered open. Contained: The risk source is isolated. Mitigated: The security risk is mitigated by being blocked or dropped. (Blank): Other scenarios. FortiAnalyzer_7.0_Study_Guide-Online pag. 206
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...