ExamGecko
Question list
Search
Search

Question 787 - CISM discussion

Report
Export

For event logs to be acceptable for incident investigation, which of the following is the MOST important consideration to establish chain of evidence?

A.
Centralized logging
Answers
A.
Centralized logging
B.
Time clock synchronization
Answers
B.
Time clock synchronization
C.
Available forensic tools
Answers
C.
Available forensic tools
D.
Administrator log access
Answers
D.
Administrator log access
Suggested answer: B
asked 01/10/2024
Alex Rector
30 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first