Skip to content
PANW-XDRE
Detection and Reporting
hard
Question 1 of 44

A deployment lead wants to create a correlation-based detection rule during post-deployment tuning without shifting to an unrelated Cortex XDR function. Which choice is best?

AReporting templates
BReporting workflow
CBehavioral indicators of compromise (BIOCs)
DCorrelation

Educational Content — CertQnA practice questions are written against official exam objectives, covering the same domains tested on the real exam. All content is original and independent — not actual exam questions, not affiliated with any certification vendor. Learn more about our content policy

Discussion

Be the first to share your understanding of this concept

⚠️ Discussion is for concept clarification only. Do not share or request actual exam questions or answers.

Sign in to join the discussion