Splunk Related Exams
SPLK-5001 Exam

Which pre-packaged app delivers security content and detections on a regular, ongoing basis for Enterprise Security and SOAR?
Which dashboard in Enterprise Security would an analyst use to generate a report on users who are currently on a watchlist?
An analyst notices that one of their servers is sending an unusually large amount of traffic, gigabytes more than normal, to a single system on the Internet. There doesn’t seem to be any associated increase in incoming traffic.
What type of threat actor activity might this represent?