ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 260 - SY0-601 discussion

Report
Export

A security administrator is compiling information from all devices on the local network in order to gain better visibility into user activities. Which of the following is the best solution to meet this objective?

A.
SIEM
Answers
A.
SIEM
B.
HIDS
Answers
B.
HIDS
C.
CASB
Answers
C.
CASB
D.
EDR
Answers
D.
EDR
Suggested answer: A

Explanation:

SIEM stands for Security Information and Event Management, which is a solution that can collect, correlate, and analyze security logs and events from various devices on a network. SIEM can provide better visibility into user activities by generating reports, alerts, dashboards, and metrics. SIEM can also help detect and respond to security incidents, comply with regulations, and improve security posture.

asked 02/10/2024
Gennadiy Volkov
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first