CrowdStrike Certified Falcon Administrator - CCFA-200 FREE EXAM DUMPS QUESTIONS & ANSWERS
How does the Unique Hosts Connecting to Countries Map help an administrator?
Correct Answer: B
Vote an answer
Explanation: Only visible for FreeCram members. You can sign-up / login (it's free).
What best describes what happens to detections in the console after clicking "Enable Detections" for a host which previously had its detections disabled?
Correct Answer: A
Vote an answer
Explanation: Only visible for FreeCram members. You can sign-up / login (it's free).
One of your development teams is working on code for a new enterprise application but Falcon continually flags the execution as a detection during testing. All development work is required to be stored on a file share in a folder called "devcode." What setting can you use to reduce false positives on this file path?
Correct Answer: B
Vote an answer
Explanation: Only visible for FreeCram members. You can sign-up / login (it's free).
Which of the following options is a feature found ONLY with the Sensor-based Machine Learning (ML)?
Correct Answer: A
Vote an answer
Explanation: Only visible for FreeCram members. You can sign-up / login (it's free).
Which port and protocol does the sensor use to communicate with the CrowdStrike Cloud?
Correct Answer: C
Vote an answer
Explanation: Only visible for FreeCram members. You can sign-up / login (it's free).
Custom IOA rules are defined using which syntax?
Correct Answer: D
Vote an answer
Explanation: Only visible for FreeCram members. You can sign-up / login (it's free).
When uninstalling a sensor, which of the following is required if the 'Uninstall and maintenance protection' setting is enabled within the Sensor Update Policies?
Correct Answer: C
Vote an answer
Explanation: Only visible for FreeCram members. You can sign-up / login (it's free).
Which exclusion pattern will prevent detections on a file at C:\Program Files\My Program\My Files\program.exe?
Correct Answer: B
Vote an answer
Explanation: Only visible for FreeCram members. You can sign-up / login (it's free).
What should be disabled on firewalls so that the sensor's man-in-the-middle attack protection works properly?
Correct Answer: B
Vote an answer
Explanation: Only visible for FreeCram members. You can sign-up / login (it's free).
What best describes the relationship between Sensor Update policies and Operating Systems?
Correct Answer: A
Vote an answer
Explanation: Only visible for FreeCram members. You can sign-up / login (it's free).