Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Palo Alto Networks Exam PCDRA Topic 10 Question 59 Discussion

Actual exam question for Palo Alto Networks's Palo Alto Networks Certified Detection and Remediation Analyst exam
Question #: 59
Topic #: 10
[All Palo Alto Networks Certified Detection and Remediation Analyst Questions]

Which of the following paths will successfully activate Remediation Suggestions?

Show Suggested Answer Hide Answer
Suggested Answer: B

Remediation Suggestions is a feature of Cortex XDR that provides you with recommended actions to remediate the root cause and impact of an incident. Remediation Suggestions are based on the analysis of the causality chain, the behavior of the malicious files or processes, and the best practices for incident response. Remediation Suggestions can help you to quickly and effectively contain and resolve an incident, as well as prevent future recurrence.

To activate Remediation Suggestions, you need to follow these steps:

In the Cortex XDR management console, go toIncidentsand select an incident that you want to remediate.

ClickCausality Viewto see the graphical representation of the causality chain of the incident.

ClickActionsand selectRemediation Suggestions. This will open a new window that shows the suggested actions for each node in the causality chain.

Review the suggested actions and select the ones that you want to apply. You can also edit or delete the suggested actions, or add your own custom actions.

ClickApplyto execute the selected actions on the affected endpoints. You can also schedule the actions to run at a later time or date.


Remediate Changes from Malicious Activity: This document explains how to use Remediation Suggestions to remediate the root cause and impact of an incident.

Causality View: This document describes how to use Causality View to investigate the causality chain of an incident.

Contribute your Thoughts:

Elmira
13 days ago
Remediation Suggestions? More like Remediation Confusion, am I right? But in all seriousness, I think D is the way to go.
upvoted 0 times
Leota
4 days ago
I agree, D seems like the most direct path to access Remediation Suggestions.
upvoted 0 times
...
...
Kristine
17 days ago
Hmm, I'm torn between C and D. Decisions, decisions. Maybe I'll just roll a dice to decide.
upvoted 0 times
Alease
21 hours ago
I believe C is the way to go for activating Remediation Suggestions.
upvoted 0 times
...
Wilda
3 days ago
I think D is the correct path to activate Remediation Suggestions.
upvoted 0 times
...
...
Cherelle
18 days ago
I think B) Causality View > Actions > Remediation Suggestions could be a possible path as well.
upvoted 0 times
...
Dottie
20 days ago
I'm not sure, but I think C) Alerts Table > Right-click on a process node > Remediation Suggestions might also work.
upvoted 0 times
...
Justine
21 days ago
I disagree, I believe the correct path is D) Alerts Table > Right-click on an alert > Remediation Suggestions.
upvoted 0 times
...
Edison
24 days ago
Hah, who needs Remediation Suggestions when you can just turn it all off and call it a day? But seriously, I'm going with D.
upvoted 0 times
...
Elmira
29 days ago
I think the correct path is A) Incident View > Actions > Remediation Suggestions.
upvoted 0 times
...
Thomasena
30 days ago
Wait, are we supposed to do this from the Alerts Table? I was thinking B - Causality View would be the way to go.
upvoted 0 times
Fairy
6 days ago
I'm not sure, I was leaning towards A.
upvoted 0 times
...
Tambra
6 days ago
I believe C is the right way to activate Remediation Suggestions from the Alerts Table.
upvoted 0 times
...
Jaclyn
14 days ago
I think D is the correct path.
upvoted 0 times
...
Tonette
20 days ago
I usually go through Incident View to access Remediation Suggestions.
upvoted 0 times
...
Emmett
23 days ago
I think D is the correct path to activate Remediation Suggestions.
upvoted 0 times
...
...
Derick
1 months ago
I think D is the correct answer. Makes sense to access Remediation Suggestions from the Alerts Table.
upvoted 0 times
Rebbecca
17 days ago
I think A might also work, since it involves going through the Incident View.
upvoted 0 times
...
Jillian
18 days ago
I agree, D seems like the most logical choice.
upvoted 0 times
...
...

Save Cancel