ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 189 - CS0-003 discussion

Report
Export

Which of the following techniques can help a SOC team to reduce the number of alerts related to the internal security activities that the analysts have to triage?

A.
Enrich the SIEM-ingested data to include all data required for triage.
Answers
A.
Enrich the SIEM-ingested data to include all data required for triage.
B.
Schedule a task to disable alerting when vulnerability scans are executing.
Answers
B.
Schedule a task to disable alerting when vulnerability scans are executing.
C.
Filter all alarms in the SIEM with low severity.
Answers
C.
Filter all alarms in the SIEM with low severity.
D.
Add a SOAR rule to drop irrelevant and duplicated notifications.
Answers
D.
Add a SOAR rule to drop irrelevant and duplicated notifications.
Suggested answer: B
asked 02/10/2024
Francisli Lilles
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first