Câu 163: SY0-601: CompTIA Security+ 2021
The SOC for a large MSSP is meeting to discuss the lessons learned from a recent incident that took much too long to resolve. This type of incident has become more common in recent weeks and is consuming large amounts of the analysts' time due to manual tasks being performed. Which of the following solutions should th…
Nội dung câu hỏi
The SOC for a large MSSP is meeting to discuss the lessons learned from a recent incident that took much too long to resolve. This type of incident has become more common in recent weeks and is consuming large amounts of the analysts' time due to manual tasks being performed. Which of the following solutions should the SOC consider to BEST improve its response time?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Configure a NIDS appliance using a Switched Port Analyzer.
- B. Collect OSINT and catalog the artifacts in a central repository.
- C. Implement a SOAR with customizable playbooks. — đáp án hiện tại
- D. Install a SIEM with community-driven threat intelligence.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.