Splunk Observability Cloud Certified Metrics User — Question 20
An analyst would like to visualize threat objects across their environment and chronological risk events for a Risk Object in Incident Review. Where would they find this?
Answer options
- A. Running the Risk Analysis Adaptive Response action within the Notable Event.
- B. Via a workflow action for the Risk Investigation dashboard.
- C. Via the Risk Analysis dashboard under the Security Intelligence tab in Enterprise Security.
- D. Clicking the risk event count to open the Risk Event Timeline.
Correct answer: D
Explanation
The correct answer is D because clicking the risk event count directly opens the Risk Event Timeline, allowing visualization of risk events. Options A and B do not provide access to the timeline, and option C refers to a different dashboard that does not specifically show the chronological events.