ExamGecko
Question list
Search
Search

Question 30 - PCCET discussion

Report
Export

Systems that allow for accelerated incident response through the execution of standardized and automated playbooks that work upon inputs from security technology and other data flows are known as what?

A.
XDR
Answers
A.
XDR
B.
STEP
Answers
B.
STEP
C.
SOAR
Answers
C.
SOAR
D.
SIEM
Answers
D.
SIEM
Suggested answer: C

Explanation:

SOAR stands forsecurity orchestration, automation and response. It is a software solution that enables security teams to integrate and coordinate separate tools into streamlined threat response workflows. SOAR systems allow for accelerated incident response through the execution of standardized and automated playbooks that work upon inputs from security technology and other data flows. SOAR systems can also help ensure consistency, reduce human errors, and improve efficiency and scalability of security operations.Reference:

Security Operations Infrastructurefrom Palo Alto Networks

What is SOAR (security orchestration, automation and response)?from IBM

Security Operations Fundamentals (SOF) Flashcardsfrom Quizlet

asked 23/09/2024
BETTE SLETTER
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first