1.
An administrator needs to import data into QRadar for a specific use case. The data that has been provided to the administrator is stored in records that map a key to a value. Which type of data collection must the administrator create?
2.
To comply with specific regulations, an administrator has been requested to increase asset retention to 365 days. In which QRadar section can the administrator find the asset retention settings?
3.
An administrator is seeing the following system notification: 38750057
4.
An administrator needs to import a list of HR staff logins into a reference set. Which file type can be used with the import function in the reference set editor window?
5.
An administrator plans to deploy multiple log sources that share a common configuration. How many log sources can be added at one time?
6.
Which log should be reviewed to determine the reasons a patch installer did not proceed during a QRadar upgrade?
7.
An administrator has to change the system hardware clock of the QRadar server. The administrator has already restarted the main services (hostservices, tomcat, hostcontext) and needs to synchronize the QRadar Console time with the QRadar managed hosts. Which command can the administrator use to accomplish this?
8.
A company has two different domains in their IBM QRadar system: Domain_A and Domain_B. An administrator has been tasked to create a rule to look only at events that are tagged with Domain_A and ignore rules that are tagged with the other domains. What domain text should the administrator use to create this rule?
9.
What is a reason for restarting hostcontext service in QRadar?
10.
Which of the following dashboards is a QRadar default Dashboard?