Spring Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Paloalto Networks Palo Alto Networks Security Operations Professional SecOps-Pro Question # 8 Topic 1 Discussion

Paloalto Networks Palo Alto Networks Security Operations Professional SecOps-Pro Question # 8 Topic 1 Discussion

SecOps-Pro Exam Topic 1 Question 8 Discussion:
Question #: 8
Topic #: 1

Which action should an administrator take to create automated response actions when a user account is compromised? (Choose one answer)


A.

Map the events as a type of Cortex XSOAR incident, then run a playbook.


B.

Run a custom script from the Cortex XDR script library.


C.

Create a script in Cortex XSOAR that will run a playbook based on the scenario.


D.

Create playbook triggers in Cortex XSIAM and run playbooks for each alert.


Get Premium SecOps-Pro Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.