Exam SPLK-5002 Topic 3 Question 78 Discussion

Actual exam question for Splunk's SPLK-5002 exam
Question #: 78
Topic #: 3
While working with the SOC analysts to review current contextualization processes, a request for automation has been raised by the SOC team. They are asking for a new automation that will check a potentially malicious URL against a remote URL filtering list. Which of the following options will work for them?

Suggested Answer: B Vote an answer

The SOC can implement this automation using either an Adaptive Response Action (triggered from a notable or event) or an Input Playbook (triggered when a URL is submitted for analysis).
Both approaches allow automated checks against a remote URL filtering list to enrich and contextualize findings.

by Dennis at Jun 26, 2026, 10:46 AM

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Nick name: Submit Cancel
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

0
0
0
10