After pivoting to an event search from a detection, you locate the ProcessRollup2 event. Which two field values are you required to obtain to perform a Process Timeline search so you can determine what the process was doing?
Aside from a Process Timeline or Event Search, how do you export process event data from a detection in .CSV format?
When analyzing an executable with a global prevalence of common; but you do not know what the executable is. what is the best course of action?
When you configure and apply an IOA exclusion, what impact does it have on the host and what you see in the console?
Which Executive Summary dashboard item indicates sensors running with unsupported versions?
When looking at the details of a detection, there are two fields called Global Prevalence and Local Prevalence. Which answer best defines Local Prevalence?
From a detection, what is the fastest way to see children and sibling process information?