Fortinet NSE 5 - FortiSIEM 5.2 NSE5_FSM-5.2 Exam Questions

Page: 1 / 14
Total 42 questions
Question 1

Which FortiSIEM components can do performance availability and performance monitoring?



Answer : A


Question 2

A FortiSIEM administrator wants to restrict a network administrator to running searches for only firewall devices. Under role management, which option does the FortiSIEM administrator need to configure to achieve this scenario?



Answer : B


Question 3

Refer to the exhibit.

What do the yellow stars listed in the Monitor column indicate?



Answer : B


Question 4

Refer to the exhibit.

An administrator is trying to identify an issue using an expression bated on the Expression Builder settings shown in the exhibit however, the error message shown in the exhibit indicates that the expression is invalid.

Which is the correct expression?



Answer : C


Question 5

An administrator wants to search for events received from Linux and Windows agents.

Which attribute should the administrator use in search filters, to view events received from agents only.



Answer : A


Question 6

Refer to the exhibit.

If events are grouped by Reporting IP, Event Type, and user attributes in FortiSIEM, how ,many results will be displayed?



Answer : D


Question 7

What are the four possible incident status values?



Answer : C


Page:    1 / 14   
Total 42 questions