A. Define a task in a playbook to generate an incident report before the closure occurs
B. Configure post-processing using a script
C. Create an 'Incident Report' from the Reports page
D. Manually create an 'Incident Report'
A. Create a custom widget using a new incident query
B. Create a custom widget using a script
C. Create widget of type Number, check 'Display Trend' and define as 7 days ago
D. Create widget of type Line, check 'Display Trend' and define as 7 days ago
A. /var/log/demisto
B. /var/lib/demisto
C. /tmp/log/demisto
D. /usr/local/demisto
A. Mapping
B. Playbooks
C. Classification
D. Layouts
A. 2MB
B. 1MB
C. 3MB
D. 5MB
A. For-each
B. Data collection
C. Automation
D. Built-in
E. Conditional
A. From context data, if context is shared globally
B. Automatically extracted by sub-playbooks
C. Inputs and outputs
D. Through integration context
A. Register a user account with support.paloaltonetworks.com .
B. Detach the content item you want to edit from the Marketplace.
C. Go to Settings > About >Troubleshooting and set a flag to allow custom content.
D. Download the content from the Marketplace.
A. Distributed database
B. Backup data to XSOAR engines
C. Local backup
D. Live backup (disaster recovery)
A. To generate new widgets for a dashboard
B. To automate tasks such as parsing a file or enriching indicators
C. To create an incident or escalate an existing incident
D. To highlight different paths in a playbook
A. Define 'parameters'
B. Correlate to incident types
C. Set password protection
D. Define 'outputs'