Glossary Terms from Module 3-02 Flashcards
Define Chronicle
A cloud-native tool designed to retain, analyze, and search data (Google)
Define Operating system (OS)
The interface between computer hardware and the user
Define Incident response
An organization’s quick attempt to identify an attack, contain the damage, and correct the effects of a security breach
Define Log
A record of events that occur within an organization’s systems
Define Metrics
Key technical attributes such as response time, availability, and failure rate, which are used to assess the performance of a software application
Define Security orchestration, automation, and response (SOAR)
A collection of applications, tools, and workflows that use automation to respond to security events
Define Playbook
A manual that provides details about any operational action
Define Security information and event management (SIEM)
An application that collects and analyzes log data to monitor critical activities in an organization
Define SIEM tools
A software platform that collects, analyzes, and correlates security data from various sources across your IT infrastructure that helps identify and respond to security threats in real-time, investigate security incidents, and comply with security regulations
Define Splunk Cloud
A cloud-hosted tool used to collect, search, and monitor log data
Define Splunk Enterprise
A self-hosted tool used to retain, analyze, and search an organization’s log data to provide security information and alerts in real-time