Splunk
SPLK-5001 · Question #2
SPLK-5001 Question #2: Real Exam Question with Answer & Explanation
The correct answer is D. Clicking the risk event count to open the Risk Event Timeline.. See the full explanation below for the reasoning.
Question
An analyst would like to visualize threat objects across their environment and chronological risk events for a Risk Object in Incident Review. Where would they find this?
Options
- ARunning the Risk Analysis Adaptive Response action within the Notable Event.
- BVia a workflow action for the Risk Investigation dashboard.
- CVia the Risk Analysis dashboard under the Security Intelligence tab in Enterprise Security.
- DClicking the risk event count to open the Risk Event Timeline.
Community Discussion
No community discussion yet for this question.