CompTIA
CAS-002 · Question #220
CAS-002 Question #220: Real Exam Question with Answer & Explanation
Sign in or unlock CAS-002 to reveal the answer and full explanation for question #220. The question stem and answer options stay visible for context.
Question
A retail bank has had a number of issues in regards to the integrity of sensitive information across all of its customer databases. This has resulted in the bank's share price decreasing in value by 50% and regulatory intervention and monitoring. The new Chief Information Security Officer (CISO) as a result has initiated a program of work to solve the issues. The business has specified that the solution needs to be enterprise grade and meet the following requirements: - Be across all major platforms, applications and infrastructure. - Be able to track user and administrator activity. - Does not significantly degrade the performance of production platforms, applications, and infrastructures. - Real time incident reporting. - Manageable and has meaningful information. - Business units are able to generate reports in a timely manner of the unit's system assets. In order to solve this problem, which of the following security solutions will BEST meet the above requirements? (Select THREE).
Options
- AImplement a security operations center to provide real time monitoring and incident response
- BImplement an aggregation based SIEM solution to be deployed on the log servers of the major
- CImplement a security operations center to provide real time monitoring and incident response
- DEnsure that the network operations center has the tools to provide real time monitoring and
- EImplement an agent only based SIEM solution to be deployed on all major platforms,
- FEnsure appropriate auditing is enabled to capture the required information.
- GManually pull the logs from the major platforms, applications, and infrastructures to a central
Unlock CAS-002 to see the answer
You've previewed enough free CAS-002 questions. Unlock CAS-002 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.