CrowdStrike Certified Falcon Administrator (CCFA) Free Practice Exam Questions

234 real CrowdStrike Certified Falcon Administrator (CCFA) exam questions with answers and AI explanations. CrowdStrike certification prep — page 19 of 24.

  1. Question 181: Which report would show you an overview of the top ten most-applied policies by sensors in your environment?
  2. Question 182: When creating a machine learning exclusion with glob syntax, what are the three items you can target for exclusion?
  3. Question 183: Where can you find hosts that have been offline for ten minutes or longer?
  4. Question 184: How can you search for multiple hostnames at the same time via Host Management?
  5. Question 185: Your security team is noticing that certain privacy-sensitive information such as the URL, HTTP Header and POST bodies are missing from HTTP related detections…
  6. Question 186: You want to add an additional layer of security to high-risk RTR commands for your environment. Where would you configure MFA for RTR within the UI?
  7. Question 187: A host has been Network contained with Falcon and you have been asked to update the Operating System with zero day patches. You have tried using your patch upd…
  8. Question 188: What default user role can manage API credentials?
  9. Question 189: Using Host setup and management inside the Falcon Console, how can you display sensors in Reduced Functionality Mode (RFM)?
  10. Question 190: You are deploying the Falcon sensor to a total of 500 hosts. Hosts in an Organizational Unit (OU) will need a specific exclusion that was previously identified…