Week 4 - Logging Flashcards
1
Q
What is logging?
A
allows organizations to answer key questions during a cyber incident
e.g
What has happened?
What is the impact?
What actions should be taken next?
2
Q
What are the challenges in logging?
A
- Log generation
- Log security
- Log analysis
3
Q
What are some sources of log data?
A
- Application logs
- firewall logs
- system logs,
4
Q
Why is log generation challenging?
A
- High volume of logs
- Inconsistent formatting
- Multiple file types
5
Q
What types of sensitive information can logs contain?
A
- IP addresses
- Credentials
- GPS data