nerdexam
F5

401 · Question #42

Which approach is best when analyzing logs after a suspected security breach?

The correct answer is B. Correlate logs from multiple sources to identify patterns. See the full explanation below for the reasoning.

Question

Which approach is best when analyzing logs after a suspected security breach?

Options

  • AFocus on logs from the affected systems only
  • BCorrelate logs from multiple sources to identify patterns
  • CIgnore logs older than 24 hours
  • DDelete all logs to protect privacy

How the community answered

(61 responses)
  • A
    5% (3)
  • B
    80% (49)
  • C
    2% (1)
  • D
    13% (8)

Community Discussion

No community discussion yet for this question.

Full 401 Practice