Palo_Alto_Networks
CLOUDSEC-PRO · Question #18
In SOC automation, AI-driven incident enrichment refers to:
The correct answer is A. Adding contextual threat data to alerts automatically. Incident enrichment involves pulling related threat intelligence, asset details, and historical incident data into an alert automatically, enabling analysts to make faster, better-informed
SOC Automation and AI/ML Operations
Question
In SOC automation, AI-driven incident enrichment refers to:
Options
- AAdding contextual threat data to alerts automatically
- BIncreasing the size of log files
- CUpdating analyst LinkedIn profiles
- DCompressing backup images
How the community answered
(43 responses)- A79% (34)
- B2% (1)
- C7% (3)
- D12% (5)
Explanation
Incident enrichment involves pulling related threat intelligence, asset details, and historical incident data into an alert automatically, enabling analysts to make faster, better-informed
Topics
#incident enrichment#SOC automation#alert context#AI-driven analysis
Community Discussion
No community discussion yet for this question.