nerdexam
F5

401 · Question #42

Which approach is best when analyzing logs after a suspected security breach?

The correct answer is B. Correlate logs from multiple sources to identify patterns. See the full explanation below for the reasoning.

Section 6: Threat Management and Incident Response

Question

Which approach is best when analyzing logs after a suspected security breach?

Options

  • AFocus on logs from the affected systems only
  • BCorrelate logs from multiple sources to identify patterns
  • CIgnore logs older than 24 hours
  • DDelete all logs to protect privacy

How the community answered

(61 responses)
  • A
    5% (3)
  • B
    80% (49)
  • C
    2% (1)
  • D
    13% (8)

Topics

#log correlation#log analysis#security breach investigation#multi-source analysis

Community Discussion

No community discussion yet for this question.

Full 401 Practice