Kahoots 3 Flashcards
How is an alert communicated?
a. ) Email
b. ) Automatic Scripts
c. ) SNMP
d. ) All the above
d.)
What are some types of SIEM alerts (select 2)
a. ) Abuse of privileges
b. ) Weather report
c. ) Fraud
d. ) Network monitoring
a.) & c.)
Anomalies rely on the previously established baselines to identify deviations T or F
True
Who are dashboards main audiences? (Select 2)
a. ) Executives
b. ) Kids
c. ) Vendors
d. ) Technicians/Analysts
a.) & d.)
What are the two primary SOAR features?
a. ) Reduce risk levels
b. ) Security Incident response
c. ) Security Operation Automation
d. ) Notify executives
c.)
A SIEM is designed to reduce the need for human intervention during IR
False
What is the goal of the Triage Process
a. ) Identify that there is a threat
b. ) Prioritize incidents
c. ) Identify potential data at risk
d. ) All of the above
d.)
SOAR automates actions upon detection of specific events T or F
True
Organizations will use the same playbook for all security incidents T or F
False