List of questions
Related questions
Question 120 - CS0-003 discussion
Which of the following would help an analyst to quickly find out whether the IP address in a SIEM alert is a known-malicious IP address?
A.
Join an information sharing and analysis center specific to the company's industry.
B.
Upload threat intelligence to the IPS in STIX/TAXII format.
C.
Add data enrichment for IPS in the ingestion pipleline.
D.
Review threat feeds after viewing the SIEM alert.
Your answer:
0 comments
Sorted by
Leave a comment first