ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 314 - SY0-701 discussion

Report
Export

Which of the following alert types is the most likely to be ignored over time?

A.
True positive
Answers
A.
True positive
B.
True negative
Answers
B.
True negative
C.
False positive
Answers
C.
False positive
D.
False negative
Answers
D.
False negative
Suggested answer: C

Explanation:

A false positive is an alert that incorrectly identifies benign activity as malicious. Over time, if an alerting system generates too many false positives, security teams are likely to ignore these alerts, resulting in 'alert fatigue.' This increases the risk of missing genuine threats.

True positives and true negatives are accurate and should be acted upon.

False negatives are more dangerous because they fail to identify real threats, but they are not 'ignored' since they do not trigger alerts.

asked 02/10/2024
Jatuchot Siriwongsilp
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first