nerdexam
ExamsCAS-002Questions#220
CompTIA

CAS-002 · Question #220

CAS-002 Question #220: Real Exam Question with Answer & Explanation

Sign in or unlock CAS-002 to reveal the answer and full explanation for question #220. The question stem and answer options stay visible for context.

Question

A retail bank has had a number of issues in regards to the integrity of sensitive information across all of its customer databases. This has resulted in the bank's share price decreasing in value by 50% and regulatory intervention and monitoring. The new Chief Information Security Officer (CISO) as a result has initiated a program of work to solve the issues. The business has specified that the solution needs to be enterprise grade and meet the following requirements: - Be across all major platforms, applications and infrastructure. - Be able to track user and administrator activity. - Does not significantly degrade the performance of production platforms, applications, and infrastructures. - Real time incident reporting. - Manageable and has meaningful information. - Business units are able to generate reports in a timely manner of the unit's system assets. In order to solve this problem, which of the following security solutions will BEST meet the above requirements? (Select THREE).

Options

  • AImplement a security operations center to provide real time monitoring and incident response
  • BImplement an aggregation based SIEM solution to be deployed on the log servers of the major
  • CImplement a security operations center to provide real time monitoring and incident response
  • DEnsure that the network operations center has the tools to provide real time monitoring and
  • EImplement an agent only based SIEM solution to be deployed on all major platforms,
  • FEnsure appropriate auditing is enabled to capture the required information.
  • GManually pull the logs from the major platforms, applications, and infrastructures to a central

Unlock CAS-002 to see the answer

You've previewed enough free CAS-002 questions. Unlock CAS-002 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full CAS-002 Practice