A new prevention policy has been created for assignment to the group named “Servers”. When you try to apply the policy, the “Servers” group is not available. What is the most likely reason the group is not available?
A host has been Network contained with Falcon and you have been asked to update the Operating System with zero day patches. You have tried using your patch update systems for this task, but the jobs fail. Which configuration steps in the Falcon UI will allow these activities?
You have 100 hashes that have been prohibited by management and need to be blocked within your organization. Using Falcon, what is the best way to accomplish this?
In order to quarantine files on the host, what prevention policy settings must be enabled?
What action should you take to securely allow operating system update processes to occur during network containment?
You are tasked with creating a “Workstations” host group to encompass all workstations in your environment. Which dynamic grouping criteria will most efficiently accomplish this task?
When using Microsoft Windows, what command verifies that a Falcon Sensor is running?
Using Host setup and management inside the Falcon Console, how can you display sensors in Reduced Functionality Mode?
Which setting inside the Sensor Update Policy prevents unauthorized uninstallation?
What is the primary concern with Windows sensors going into Reduced Functionality Mode?
From the Host management page, what is the best field to filter by for Domain Controllers to obtain sensor version information?
In addition to Host Groups, what other groups can a prevention policy be applied to?
What happens to policy assignment when a host does not match any custom host group criteria?
What prevention policy setting prevents sensor-related files, folders, and registry objects from being renamed or deleted?
Which report provides a filterable high-level overview of host information such as OS version, Device Type and Machine Domain, and also provides an active sensor heat map for a quick environment review?
You are tasked with creating a group for hosts running Windows 10. What kind of group should you create to make sure all applicable hosts are included in your environment?
When creating your own Fusion SOAR workflow based on an Event trigger, which additional option will refine the trigger?
Your organization wants to monitor the use of remote access software that is currently authorized. The executable is called remote.exe. How would you trigger a detection for review of any process named remote.exe?