List of questions
Related questions
Question 324 - CS0-003 discussion
An organization has a critical financial application hosted online that does not allow event logging to send to the corporate SIEM. Which of the following is the best option for the security analyst to configure to improve the efficiency of security operations?
A.
Configure a new SIEM specific to the management of the hosted environment.
B.
Subscribe to a threat feed related to the vendor's application.
C.
Use a vendor-provided API to automate pulling the logs in real time.
D.
Download and manually import the logs outside of business hours.
Your answer:
0 comments
Sorted by
Leave a comment first