nerdexam
EC-CouncilEC-Council

212-82 · Question #136

212-82 Question #136: Real Exam Question with Answer & Explanation

Sign in or unlock 212-82 to reveal the answer and full explanation for question #136. The question stem and answer options stay visible for context.

Submitted by rohit_dlh· Mar 6, 2026Cloud Security Operations & Incident Response

Question

TechTonic, a leading software solution provider, is incorporating stringent cybersecurity measures for their Windows-based server farm. Recently, it noticed a series of unauthorized activities within its systems but could not trace back tot he origins. The company Intends to bolster Its monitoring capabilities by comprehensively analyzing Windows system logs. Which strategy should TechTonic prioritize to gain an insightful and effective analysis of its Windows logs, aiming to trace potential intrusions?

Options

  • AImplement a centralized logging server and analyze logs using pattern-detection algorithms.
  • BSet up monitoring only for Windows Event Log IDs commonly associated with security breaches.
  • CRoutinely back up logs every week and conduct a monthly manual review to detect anomalies.
  • DFocus solely on logs from critical servers, assuming other logs are less consequential.

Unlock 212-82 to see the answer

You've previewed enough free 212-82 questions. Unlock 212-82 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Log analysis#Centralized logging#SIEM#Intrusion detection
Full 212-82 PracticeBrowse All 212-82 Questions