Question 1 of 30
Consider a scenario where a financial services organization is implementing FortiAnalyzer 6.0 to meet stringent regulatory requirements for data privacy, such as those mandated by the General Data Protection Regulation (GDPR). The organization needs to proactively identify and report on any instances of unauthorized access to client financial data repositories, which are segmented on the network and protected by FortiGate firewalls. Which of the following strategies would best enable FortiAnalyzer to fulfill this critical compliance objective, ensuring comprehensive detection and auditable reporting of policy violations?
Implementing custom event correlation rules within FortiAnalyzer that analyze sequences of log events, including failed and successful access attempts to specific data segments, combined with FortiAnalyzer's UEBA features to detect anomalous user behavior and data exfiltration patterns.
Relying solely on the default FortiAnalyzer security profiles and basic log forwarding from FortiGate devices, assuming that standard threat intelligence feeds will inherently flag any unauthorized data access.
Configuring FortiAnalyzer to aggregate logs only from perimeter firewalls and focusing on general internet traffic analysis, while neglecting the specific internal segmentation and data access logs from internal FortiGate devices.
Utilizing FortiAnalyzer's automated report generation for general network health, without creating specific correlation rules or leveraging UEBA, believing that the sheer volume of logs will implicitly highlight any data access irregularities.

Preparing for NSE5FAZ6.0 Fortinet NSE 5 FortiAnalyzer 6.0? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free