ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 83 - SY0-601 discussion

Report
Export

An organization wants to integrate its incident response processes into a workflow with automated decision points and actions based on predefined playbooks. Which of the following should the organization implement?

A.
SIEM
Answers
A.
SIEM
B.
SOAR
Answers
B.
SOAR
C.
EDR
Answers
C.
EDR
D.
CASB
Answers
D.
CASB
Suggested answer: B

Explanation:

Security Orchestration, Automation, and Response (SOAR) should be implemented to integrate incident response processes into a workflow with automated decision points and actions based on predefined playbooks. Reference: CompTIA Security+ Study Guide, Exam SY0-601, Chapter 9

asked 02/10/2024
Bob Xiong
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first