ExamGecko
Question list
Search
Search

Question 152 - PCCET discussion

Report
Export

What is the ptrpose of automation in SOAR?

A.
To provide consistency in response to security issues
Answers
A.
To provide consistency in response to security issues
B.
To give only administrators the ability to view logs
Answers
B.
To give only administrators the ability to view logs
C.
To allow easy manual entry of changes to security templates
Answers
C.
To allow easy manual entry of changes to security templates
D.
To complicate programming for system administration -
Answers
D.
To complicate programming for system administration -
Suggested answer: A

Explanation:

Automation in SOAR (Security Orchestration, Automation, and Response) is the process of programming tasks, alerts, and responses to security incidents so that they can be executed without human intervention. Automation in SOAR helps security teams to handle the huge amount of information generated by various security tools, analyze it through machine learning processes, and take appropriate actions based on predefined rules and workflows. Automation in SOAR also reduces the manual effort and time required for security operations, improves the accuracy and efficiency of threat detection and response, and provides consistency in handling security issues across different environments and scenarios.

Reference: What is SOAR (security orchestration, automation and response)? | IBM, What Is SOAR? Technology and Solutions | Microsoft Security, Security orchestration - Wikipedia.

asked 23/09/2024
Kina Collins
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first