19.2 Splunk Enterprise Security Flashcards
While SIEM products such as Splunk ES provide many monitoring benefits, organizations are now integrating ____________ into their businesses to provide additional protection.
While SIEM products such as Splunk ES provide many monitoring benefits, organizations are now integrating **advanced security monitoring solutions** into their businesses to provide additional protection.
The most popular advancements in the information security industry are: (3)
- User behavior analytics (UBA)
- User and entity behavior analytics (UEBA)
- Security orchestration, automation and response (SOAR)
______ is a security monitoring tool that uses machine learning, artificial intelligence, and data processing to detect abnormalities in user activity.
**UBA** (User Behavior Analytics) is a security monitoring tool that uses machine learning, artificial intelligence, and data processing to detect abnormalities in user activity.