Module 02 - Fighters in the War Against Cybercrime Flashcards

1
Q

What is a SOC?

A

Security Operations Centre

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a SIEM?

A

Security Information and Event Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What does a tier 1 analyst do?

A

Monitors incoming alerts, verifies that it is a true incident

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What does a tier 2 responder do?

A

deep investigation of incidents and advise action to be taken

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does a tier 3 threat hunter do?

A

experts in their field

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How many metrics are used in a SOC?

A

5 Metrics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Dwell Time?

A

Length of time that threats have access to a network before they are detected

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Mean Time to Detect (MTTD)

A

the average time it takes for the SOC to identify valid security incidents

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Mean Time to Respond (MTTR)

A

The average time it takes to stop an incident

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Mean TIme to Control (MTTC)

A

The time required to stop the incident from causing further damage.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Time to Control

A

The time required to stop the spread of malware in the network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly