How is a Django filter query performed?
Which app allows a user to run Splunk queries from within Phantom?
What are the differences between cases and events?
A user selects the New option under Sources on the menu. What will be displayed?
A new project requires event data from SOAR to be sent to an external system via REST. All events with the label notable that are in new status should be sent. Which of the following REST Django expressions will select the correct events?
How can the DECIDED process be restarted?
On the Splunk search head, when configuring the app to search SOAR searchable content, what are the two requirements to complete the app setup?
Within the 12A2 design methodology, which of the following most accurately describes the last step?
When the Splunk App for SOAR Export executes a Splunk search, which activities are completed?
Which of the following queries would return all artifacts that contain a SHA1 file hash?