Câu 34: 312-39V2: Certified SOC Analyst (CSA) v2
Katie is working in the Cyber Security department of an international Financial Corporation INT FIN Corp. as a SOC analyst. She is responsible for monitoring logs to detect potential security threats in real time. Her team needs to implement a functionality as part of incident response plan such that the system that i…
Nội dung câu hỏi
Katie is working in the Cyber Security department of an international Financial Corporation INT FIN Corp. as a SOC analyst. She is responsible for monitoring logs to detect potential security threats in real time. Her team needs to implement a functionality as part of incident response plan such that the system that it continuously scans logs for anomalies, identifies suspicious activities, and want to be notified when predefined security thresholds are reached as well as generate incidents or issue tickets to ensure immediate response and mitigation. It must provide critical details such as the type of event, its duration, the affected device, and its OS version. Which function should she configure to achieve this?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Alerting and Reporting — đáp án hiện tại
- B. Log collection
- C. Log parsing
- D. Log normalization
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.