Câu 1: SPLK-5003: Splunk Certified Cybersecurity Defense Architect
Sophia manages data ingestion for her organization’s SIEM. The data science team wants to perform real-time analytics on security data and asks Sophia for a copy of all new endpoint telemetry from the current point forward. The SIEM currently collects 15TB of endpoint telemetry every day. Which of the following soluti…
Nội dung câu hỏi
Sophia manages data ingestion for her organization’s SIEM. The data science team wants to perform real-time analytics on security data and asks Sophia for a copy of all new endpoint telemetry from the current point forward. The SIEM currently collects 15TB of endpoint telemetry every day. Which of the following solutions can Sophia use to best help the data science team?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Export the last 12 months of telemetry data from the SIEM in OCSF.
- B. Use a message bus to send data to both the SIEM and data science team. — đáp án hiện tại
- C. Export the last 12 months of telemetry data from the SIEM in JSON format.
- D. Configure the SIEM to export a CSV report of all new telemetry data every night.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.