List of questions
Related questions
Question 64 - 212-82 discussion
Camden, a network specialist in an organization, monitored the behavior of the organizational network using SIFM from a control room. The SIEM detected suspicious activity and sent an alert to the camer a. Based on the severity of the incident displayed on the screen, Camden made the correct decision and immediately launched defensive actions to prevent further exploitation by attackers.
Which of the following SIEM functions allowed Camden to view suspicious behavior and make correct decisions during a security incident?
A.
Application log monitoring
B.
Log Retention
C.
Dashboard
D.
Data aggregation
Your answer:
0 comments
Sorted by
Leave a comment first