ExamGecko
Question list
Search
Search

Related questions











Question 44 - 200-201 discussion

Report
Export

Which step in the incident response process researches an attacking host through logs in a SIEM?

A.

detection and analysis

Answers
A.

detection and analysis

B.

preparation

Answers
B.

preparation

C.

eradication

Answers
C.

eradication

D.

containment

Answers
D.

containment

Suggested answer: A

Explanation:

In the incident response process, detection and analysis involve researching an attacking host through logs in a Security Information and Event Management (SIEM) system. This step helps in identifying, validating, and managing potential security incidents.Reference:=Cisco CyberOps Associate - Module 3: Security Monitoring

asked 07/10/2024
vceplus plus
46 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first