The analyst manually cleared the incident from the incident table.
B.
FortiSIEM cleared the incident automatically after 24 hours.
C.
The incident was cleared automatically by the rule.
D.
The endpoint was rebooted and sent an all-clear signal to FortiSIEM.
The Answer Is:
C
This question includes an explanation.
Explanation:
The Incident Status shows "Auto Cleared", and the Cleared Reason states: "Rule has not been triggered for 20 minutes." This indicates that the incident was automatically cleared by the rule logic after a defined period of inactivity.
FCP_FSM_AN-7.2 PDF/Engine
Printable Format
Value of Money
100% Pass Assurance
Verified Answers
Researched by Industry Experts
Based on Real Exams Scenarios
100% Real Questions
Get 75% Discount on All Products,
Use Coupon: "ac75sure"