PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER · Question #78
You are writing a Google Security Operations (SecOps) SOAR playbook that uses the VirusTotal v3 integration to look up a URL that was reported by a threat hunter in an email. You need to use the resul
Sign in or unlock PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER to reveal the answer and full explanation for question #78. The question stem and answer options stay visible for context.
Question
You are writing a Google Security Operations (SecOps) SOAR playbook that uses the VirusTotal v3 integration to look up a URL that was reported by a threat hunter in an email. You need to use the results to make a preliminary recommendation on the maliciousness of the URL and set the severity of the alert based on the output. What should you do? (Choose two.)
Options
- ACreate a widget that translates the JSON output to a severity score.
- BUse the number of detections from the response JSON in a conditional statement to set the
- CVerify that the response is accurate by manually checking the URL in VirusTotal
- DPass the response back to the SIEM.
- EUse a conditional statement to determine whether to treat the URL as suspicious or benign.
Unlock PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER to see the answer
You've previewed enough free PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER questions. Unlock PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.