nerdexam
CSA

CCSK · Question #170

What is the main data source for detection and analysis of an incident?

The correct answer is A. Logs. Alerts [endpoint protection, network security monitoring, host monitoring, account creation, privilege escalation, other indicators of compromise, SIEM, security analytics (baseline and anomaly detection), and user behavior analytics.

Cloud Incident Response

Question

What is the main data source for detection and analysis of an incident?

Options

  • ALogs
  • BData repositories
  • CThe Pew Research Center
  • DBlogs
  • EDatabase

How the community answered

(39 responses)
  • A
    74% (29)
  • B
    8% (3)
  • C
    3% (1)
  • D
    13% (5)
  • E
    3% (1)

Explanation

Alerts [endpoint protection, network security monitoring, host monitoring, account creation, privilege escalation, other indicators of compromise, SIEM, security analytics (baseline and anomaly detection), and user behavior analytics.

Topics

#incident detection#log analysis#security monitoring#incident data sources

Community Discussion

No community discussion yet for this question.

Full CCSK Practice