ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 769 - N10-008 discussion

Report
Export

Which of the following can be used to aggregate logs from different devices and would make analysis less difficult?

A.
Syslog
Answers
A.
Syslog
B.
SIEM
Answers
B.
SIEM
C.
Event logs
Answers
C.
Event logs
D.
NetFlow
Answers
D.
NetFlow
Suggested answer: B

Explanation:

SIEM stands for Security Information and Event Management, and it is a system that collects, normalizes, and analyzes log data from different sources in a centralized platform. SIEM can help identify security incidents, monitor network performance, and generate reports and alerts.SIEM can make log analysis less difficult by providing a unified view of the log data, correlating events across different devices, and applying rules and filters to detect anomalies and patterns12.

asked 02/10/2024
Terry Mergl
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first