Isaca
CISM · Question #523
Which of the following is the BEST tool to use for identifying and correlating intrusion attempt alerts?
The correct answer is B. SIEM. A SIEM aggregates logs and alerts from multiple sources, applies correlation rules to identify patterns of intrusion attempts, and provides centralized analysis - making it the optimal tool for correlating and identifying security events.
Submitted by olafpl· Apr 18, 2026Information Security Incident Management
Question
Which of the following is the BEST tool to use for identifying and correlating intrusion attempt alerts?
Options
- AThreat analytics software
- BSIEM
- CHost intrusion detection system
- DNetwork intrusion detection system
How the community answered
(20 responses)- A10% (2)
- B85% (17)
- D5% (1)
Explanation
A SIEM aggregates logs and alerts from multiple sources, applies correlation rules to identify patterns of intrusion attempts, and provides centralized analysis - making it the optimal tool for correlating and identifying security events.
Topics
#SIEM#Security Monitoring#Incident Detection#Alert Correlation
Community Discussion
No community discussion yet for this question.