CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 9: Google Cloud Professional Security Operations Engineer

Your organization recently acquired a Google Security Operations (SecOps) Enterprise Plus license. Your organization is already ingesting Cloud Audit Logs, firewall logs, proxy logs and endpoint logs, but there are no threat intelligence feeds being ingested into your Google SecOps environment. You need to design and…

Nội dung câu hỏi

Your organization recently acquired a Google Security Operations (SecOps) Enterprise Plus license. Your organization is already ingesting Cloud Audit Logs, firewall logs, proxy logs and endpoint logs, but there are no threat intelligence feeds being ingested into your Google SecOps environment. You need to design and deploy a solution that alerts your team quickly if an IOC of an active breach is observed in your environment. What should you do?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Write, enable, and configure alerting on a custom multi-event rule.
  2. B. Write, enable, and configure alerting on a custom single-event rule.
  3. C. Enable and configure alerting for relevant curated detection rule sets. — đáp án hiện tại
  4. D. Create and schedule a dashboard to send periodic summaries of the active breach IOCs and their associated events.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề