Which of the following enables the discovery of newly observed domains within three minutes of the domain coming online?
An operations team wants to determine whether reported slowness in a SaaS application is caused by the application, the network, or the endpoint.
Which ZDX diagnostic should be prioritized to align performance degradation with regions, ISPs, or time windows?
Your company has a new ZIA subscription. Which is the most effective and secure method of provisioning users?
When users are authenticated using SAML, what are the two most efficient ways of provisioning the users?
A regional SOC analyst reviews ZIdentity audit logs during a surge in administrator-related anomalies at a hosted data center. The same session shows a successful sign-in from a new geography, a change that relaxes an MFA requirement in a sign-on policy, and an entitlement grant to a service account used by build automation.
Which action should the incident responder take to constrain privilege-escalation exposure while preserving forensic continuity?
What is the recommended default rule for the cloud-gen firewall configuration when deploying a new ZIA tenant?
A device meets VPN-trusted-network criteria where existing corporate controls apply, and administrators want to minimize unnecessary tunneling while relying on application and IP bypasses in the Application Profile for selected low-latency traffic.
Which Forwarding Profile action aligns with this approach for the VPN-trusted context?
A Gold-class SaaS application performs poorly even though its bandwidth class has a generous minimum and moderate maximum. Usage dashboards show available capacity during incidents, and other applications are not saturating the link.
What is the most defensible next step to prevent recurring degradation?