Fortinet NSE5_EDR-5.0 Exam
Fortinet NSE 5 - FortiEDR 5.0 (Page 3 )

Updated On: 1-Feb-2026

What is the purpose of the Threat Hunting feature?

  1. Delete any file from any collector in the organization
  2. Find and delete all instances of a known malicious file or hash in the organization
  3. Identify all instances of a known malicious file or hash and notify affected users
  4. Execute playbooks to isolate affected collectors in the organization

Answer(s): C



An administrator finds a third party free software on a user's computer mat does not appear in me application list in the communication control console. Which two statements are true about this situation? (Choose two)

  1. The application is allowed in all communication control policies
  2. The application is ignored as the reputation score is acceptable by the security policy
  3. The application has not made any connection attempts
  4. The application is blocked by the security policies

Answer(s): B,C



A FortiEDR security event is causing a performance issue with a third-party application. What must you do first about the event?

  1. Contact Fortinet support
  2. Terminate the process and uninstall the third-party application
  3. Immediately create an exception
  4. Investigate the event to verify whether or not the application is safe

Answer(s): D



Which scripting language is supported by the FortiEDR action manager?

  1. TCL
  2. Python
  3. Perl
  4. Bash

Answer(s): B



Which FortiEDR component is required to find malicious files on the entire network of an organization?

  1. FortiEDR Aggregator
  2. FortiEDR Central Manager
  3. FortiEDR Threat Hunting Repository
  4. FortiEDR Core

Answer(s): C



Viewing page 3 of 10
Viewing questions 11 - 15 out of 44 questions



Post your Comments and Discuss Fortinet NSE5_EDR-5.0 exam prep with other Community members:

Join the NSE5_EDR-5.0 Discussion