Which three statements about collector communication with the FortiSIEM cluster are true? (Choose three.)
Refer to the exhibit.
If the Z-score for this rule is greater than or equal to three, what does this mean?
Refer to the exhibit.
The rule evaluates multiple VPN logon failures within a ten-minute window. Consider the following VPN failure events received within a ten-minute window:
How many incidents are generated?
Which of the following are two Tactics in the MITRE ATT&CK framework? (Choose two.)
Refer to the exhibit.
An administrator wants to remediate the incident from FortiSIEM shown in the exhibit.
What option is available to the administrator?