List of questions
Related questions
Question 121 - SY0-601 discussion
As part of the lessons-learned phase, the SOC is tasked with building methods to detect if a previous incident is happening again. Which of the following would allow the security analyst to alert the SOC if an event is reoccurring?
A.
Creating a playbook within the SOAR
B.
Implementing rules in the NGFW
C.
Updating the DLP hash database
D.
Publishing a new CRL with revoked certificates
Your answer:
0 comments
Sorted by
Leave a comment first