MSB 1.3 & 1.4: Dist. Between key JRSS interfaces used by GW NIPR and ESM (B) Flashcards
1
Q
GW NIPR
A
Interface- SIEM (ArcSight) & Full Packet Capture
Function- Investigate correlated alerts & analyze packet capture
2
Q
Enterprise Signature Management (ESM)
A
Interface- Security Management System (SMS)
Function- Custom signatures’ for Tipping Point Intrusion Prevention System (IPS)