Winter Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: v4s65

CCFA-200 Exam Dumps - CrowdStrike Certified Falcon Administrator

Go to page:
Question # 9

Which is the correct order for manually installing a Falcon Package on a macOS system?

A.

Install the Falcon package, then register the Falcon Sensor via the registration package

B.

Install the Falcon package, then register the Falcon Sensor via command line

C.

Register the Falcon Sensor via command line, then install the Falcon package

D.

Register the Falcon Sensor via the registration package, then install the Falcon package

Full Access
Question # 10

On which page of the Falcon console would you create sensor groups?

A.

User management

B.

Sensor update policies

C.

Host management

D.

Host groups

Full Access
Question # 11

You need to export a list of all deletions for a specific Host Name in the last 24 hours. What is the best way to do this?

A.

Go to Host Management in the Host page. Select the host and use the Export Detections button

B.

Utilize the Detection Resolution Dashboard. Use the filters to focus on the appropriate hostname and time, then export the results from the "Detection Resolution History" section

C.

In the Investigate module, access the Detection Activity page. Use the filters to focus on the appropriate hostname and time, then export the results

D.

Utilize the Detection Activity Dashboard. Use the filters to focus on the appropriate hostname and time, then export the results from the "Detections by Host" section

Full Access
Question # 12

The Falcon Administrator has created a new prevention policy to apply to the "Servers" group; however, when applying the new prevention policy this group is not appearing in the list of available groups. What is the most likely issue?

A.

The new prevention policy should be enabled first

B.

The "Servers" group already has a policy applied to it

C.

The "Servers" group must be disabled first

D.

Host type was not defined correctly within the prevention policy

Full Access
Question # 13

How many "Auto" sensor version update options are available for Windows Sensor Update Policies?

A.

1

B.

2

C.

0

D.

3

Full Access
Question # 14

What best describes what happens to detections in the console after clicking "Disable Detections" for a host from within the Host Management page?

A.

The detections for the host are removed from the console immediately and no new detections will display in the console going forward

B.

You cannot disable detections for a host

C.

Existing detections for the host remain, but no new detections will display in the console going forward

D.

Preventions will be disabled for the host

Full Access
Question # 15

Which report can assist in determining the appropriate Machine Learning levels to set in a Prevention Policy?

A.

Sensor Report

B.

Machine Learning Prevention Monitoring

C.

Falcon UI Audit Trail

D.

Machine Learning Debug

Full Access
Question # 16

On the Host management page which filter could be used to quickly identify all devices categorized as a "Workstation" by the Falcon Platform?

A.

Status

B.

Platform

C.

Hostname

D.

Type

Full Access
Go to page: