MSB 1.3 & 1.4: Dist. Between key JRSS interfaces used by GW NIPR and ESM (B) Flashcards

1
Q

GW NIPR

A

Interface- SIEM (ArcSight) & Full Packet Capture

Function- Investigate correlated alerts & analyze packet capture

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Enterprise Signature Management (ESM)

A

Interface- Security Management System (SMS)

Function- Custom signatures’ for Tipping Point Intrusion Prevention System (IPS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly