F5
401 · Question #42
Which approach is best when analyzing logs after a suspected security breach?
The correct answer is B. Correlate logs from multiple sources to identify patterns. See the full explanation below for the reasoning.
Section 6: Threat Management and Incident Response
Question
Which approach is best when analyzing logs after a suspected security breach?
Options
- AFocus on logs from the affected systems only
- BCorrelate logs from multiple sources to identify patterns
- CIgnore logs older than 24 hours
- DDelete all logs to protect privacy
How the community answered
(61 responses)- A5% (3)
- B80% (49)
- C2% (1)
- D13% (8)
Topics
#log correlation#log analysis#security breach investigation#multi-source analysis
Community Discussion
No community discussion yet for this question.