Module 3 Flashcards

1
Q

Log

A

A record of events that occur within an organization’s systems and networks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Common Log Sources

A

Firewall logs

Network logs

Server logs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Firewall Log

A

A record of attempted or established connections for incoming traffic from the Internet. Also includes outbound requests to the Internet from within the network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Network Log

A

A record of all computers and devices that enter and leave the network. It also records connections between devices and services on the network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Server Log

A

A record of events related to services, such as websites, emails, or file shares. It includes action, such as login, password, and username request.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Security Information and Event Management (SIEM)

A

An application that collects an analyzes log data to monitor critical activities in an organization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Metrics

A

Key technical attributes, such as response time, availability, and failure rate, which are used to assess the performance of a software application

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Different Types of SIEM Tools

A

Self-hosted

Cloud-hosted

Hybrid

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Splunk Enterprise

A

A self-hosted tool used to retain, analyze, and search an organizations log data to provide security information and alerts in real-time

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Splunk Cloud

A

A cloud-hosted tool used to collect, search, and monitor log data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Chronicle

A

A cloud-native tool designed to retain, analyze, and search data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly