Fortinet NSE 5 - FortiSIEM 6.3 - NSE5_FSM-6.3 Exam Practice Test

Question 1
Which is a requirement for implementing FortiSIEM disaster recovery?

Correct Answer: C
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 2
Refer to the exhibit.

Which section contains the sortings that determine how many incidents are created?

Correct Answer: B
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 3
What are two tasks that you must do to make a secondary FortiSIEM device ready for disaster recovery? (Choose two.)

Correct Answer: B,C
Question 4
Refer to the exhibit.

A FortiSIEM administrator wants to collect both SIEM event logs and performance and availability metrics (PAM) events from a Microsoft Windows server Which protocol should the administrator select in the Access Protocol drop-down list so that FortiSIEM will collect both SIEM and PAM events?

Correct Answer: C
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 5
Which database is used for storing anomaly data, that is calculated for different parameters, such as traffic and device resource usage running averages, and standard deviation values?

Correct Answer: D
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 6
An administrator is using SNMP and WMI credentials to discover a Windows device. How will the WMI method handle this?

Correct Answer: A
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 7
An administrator is investigating the slow performance of a FortiSlEM device.
Which command provides information about the CPU usage of FortiSlEM processes, disk usage, and EPS?

Correct Answer: A