Official Bank 0/30

Fortinet NSE 5 – FortiEDR 5.0 (NSE5_EDR-5.0) - Fortinet Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
30 Total Questions
1
Question
A company requires a global communication policy for a FortiEDR multi-tenant environment.

How can the administrator achieve this?
Options
A An administrator creates a new communication control policy for each organization
B An administrator creates a new communication control policy and shares it with other organizations organizations organizations
C A local administrator creates a new communication control policy and assigns it globally to all
D A local administrator creates new a communication control policy and shares it with other
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
Which connectors can you use for the FortiEDR automated incident response? (Choose two.)
Select 2
Options
A FortiSandbox
B FortiNAC
C FortiSiem
D FortiGate
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
Which two statements about the FortiEDR solution are true? (Choose two.)
Select 2
Options
A It provides pant-to-point protection
B It provides pre-infection and post-infection protection
C It provides central management
D It is Windows OS only
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
Refer to the exhibit.

Exhibit

Based on the threat hunting event details shown in the exhibit, which two statements about the event are true? (Choose two.)
Select 2
Options
A There are no MITRE details available for this event
B The PING EXE process was blocked
C The activity event is associated with the file action
D The user fortinet has executed a ping command
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
How does FortiEDR implement post-infection protection?

Exhibit
Options
A By real-time filtering to prevent malware from executing
B By preventing data exfiltration or encryption even after a breach occurs
C By insurance against ransomware
D By using methods used by traditional EDR
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.