CrowdStrike Certified Falcon Administrator (CCFA) — Question 79

You need to export a list of all detections for a specific Host Name in the last 24 hours. What is the best way to do this?

Answer options

Correct answer: C

Explanation

The correct answer is C because the Investigate module's Detection Activity page is specifically designed for analyzing detection data and allows for filtering by hostname and time. Options A, B, and D do not provide the same level of focus on detection activity over the specified timeframe as option C does.