Fortinet FCP - FortiSIEM 7.2 Analyst - FCP_FSM_AN-7.2 Exam Practice Test
Question 1
Refer to the exhibit.

The exhibit shows the configuration for a machine learning dataset using anomaly detection.
If the report generating the data being analyzed is run every hour, how long must the FortiSIEM device be up before a valid training set can be produced?

The exhibit shows the configuration for a machine learning dataset using anomaly detection.
If the report generating the data being analyzed is run every hour, how long must the FortiSIEM device be up before a valid training set can be produced?
Correct Answer: D
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 2
Refer to the exhibit.

A FortiSIEM analyst is investigating an issue by examining events related to two destination IP addresses. However, the analyst is not getting any results from the search.
Based on the selected filters shown in the exhibit, why is the search returning no results?

A FortiSIEM analyst is investigating an issue by examining events related to two destination IP addresses. However, the analyst is not getting any results from the search.
Based on the selected filters shown in the exhibit, why is the search returning no results?
Correct Answer: C
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 3
What are two required components of a rule? (Choose two.)
Correct Answer: A,B
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 4
In FortiSIEM, which database stores discovery information?
Correct Answer: C
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 5
Refer to the exhibit.

What happens when an analyst clears an incident generated by a rule containing the automation policy shown in the exhibit?

What happens when an analyst clears an incident generated by a rule containing the automation policy shown in the exhibit?
Correct Answer: A
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 6
Refer to the exhibit. What will this analytics search display?


Correct Answer: A
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).
Question 7
Which two settings must you configure to allow FortiSIEM to apply tags to devices in FortiClient EMS? (Choose two.)
Correct Answer: A,C
Explanation: Only visible for Actualtests4sure members. You can sign-up / login (it's free).

