Understand Process Improvement in Security Operations Flashcards
Security Information and Event Management(SIEM)
A solution that provides real-time or near-real-time analysis of security alerts generated by network hardware and applications.
Security Orchestration, Automation, and Response(SOAR)
A class of security tools that facilitates incident response, threat hunting, and security configuration by orchestrating automated runbooks and delivering data enrichment.
Data Enrichment
Combines and analyzes data from disparate sources to gain a greater understanding of it
Single Pane of Glass
A comprehensive, unified user interface that provides a comprehensive view of an IT environment and allows administrators to manage all connected components from one place. This type of interface simplifies the management of complex IT infrastructures
Application Programming Interface(API)
Methods exposed by a script or program that allow other scripts or programs to use it. For example, an API enables software developers to access functions of the TCP/IP network stack under a particular operating system.
Webhooks
Automated messages sent from applications to other applications containing information about an event, such as the time it occurred, the data associated with it, and any other relevant information.