ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 419 - CAS-004 discussion

Report
Export

A company with multiple locations has taken a cloud-only approach to its infrastructure The company does not have standard vendors or systems resulting in a mix of various solutions put in place by each location The Chief Information Security Officer wants to ensure that the internal security team has visibility into all platforms Which of the following best meets this objective?

A.
Security information and event management
Answers
A.
Security information and event management
B.
Cloud security posture management
Answers
B.
Cloud security posture management
C.
SNMFV2 monitoring and log aggregation
Answers
C.
SNMFV2 monitoring and log aggregation
D.
Managed detection and response services from a third party
Answers
D.
Managed detection and response services from a third party
Suggested answer: A

Explanation:

Security Information and Event Management (SIEM) systems provide real-time analysis of security alerts generated by applications and network hardware. SIEMs are beneficial in environments where there is a mix of various solutions, as they can collect and aggregate logs from multiple sources, providing the internal security team with a centralized view and visibility into all platforms. This would best meet the objective of ensuring visibility into all platforms, regardless of the differing solutions across the company's locations.

asked 02/10/2024
Ty Murray
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first