Paloalto Networks Palo Alto Networks System Engineer - Cortex Professional PSE-Cortex Question # 6 Topic 1 Discussion

Paloalto Networks Palo Alto Networks System Engineer - Cortex Professional PSE-Cortex Question # 6 Topic 1 Discussion

PSE-Cortex Exam Topic 1 Question 6 Discussion:
Question #: 6
Topic #: 1

An Administrator is alerted to a Suspicious Process Creation security event from multiple users.

The users believe that these events are false positives Which two steps should the administrator take to confirm the false positives and create an exception? (Choose two )


A.

With the Malware Security profile, disable the "Prevent Malicious Child Process Execution" module


B.

Within the Malware Security profile add the specific parent process, child process, and command line argument to the child process whitelist


C.

In the Cortex XDR security event, review the specific parent process, child process, and command line arguments


D.

Contact support and ask for a security exception.


Get Premium PSE-Cortex Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.