CSA
CCSK · Question #170
What is the main data source for detection and analysis of an incident?
The correct answer is A. Logs. Alerts [endpoint protection, network security monitoring, host monitoring, account creation, privilege escalation, other indicators of compromise, SIEM, security analytics (baseline and anomaly detection), and user behavior analytics.
Cloud Incident Response
Question
What is the main data source for detection and analysis of an incident?
Options
- ALogs
- BData repositories
- CThe Pew Research Center
- DBlogs
- EDatabase
How the community answered
(39 responses)- A74% (29)
- B8% (3)
- C3% (1)
- D13% (5)
- E3% (1)
Explanation
Alerts [endpoint protection, network security monitoring, host monitoring, account creation, privilege escalation, other indicators of compromise, SIEM, security analytics (baseline and anomaly detection), and user behavior analytics.
Topics
#incident detection#log analysis#security monitoring#incident data sources
Community Discussion
No community discussion yet for this question.