Weekend Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Exam XDR-Engineer All Questions
Exam XDR-Engineer All Questions

View all questions & answers for the XDR-Engineer exam

Paloalto Networks Security Operations XDR-Engineer Question # 4 Topic 1 Discussion

XDR-Engineer Exam Topic 1 Question 4 Discussion:
Question #: 4
Topic #: 1

During a recent internal purple team exercise, the following recommendation is given to the detection engineering team: Detect and prevent command line invocation of Python on Windows endpoints by non-technical business units. Which rule type should be implemented?


A.

Analytics Behavioral Indicator of Compromise (ABIOC)


B.

Behavioral Indicator of Compromise (BIOC)


C.

Correlation


D.

Indicator of Compromise (IOC)


Get Premium XDR-Engineer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.