Palo_Alto_Networks
CLOUDSEC-PRO · Question #197
CLOUDSEC-PRO Question #197: Real Exam Question with Answer & Explanation
The correct answer is B. SIEM. SIEM solutions collect logs from firewalls, IDS/IPS, servers, endpoints, and applications into a central platform. This allows SOC teams to correlate events, identify patterns, and trigger alerts when anomalies occur.
Question
In a SOC, log aggregation from diverse sources is primarily handled by:
Options
- AIPS
- BSIEM
- CFirewall ACLs
- DPatch Management Tools
Explanation
SIEM solutions collect logs from firewalls, IDS/IPS, servers, endpoints, and applications into a central platform. This allows SOC teams to correlate events, identify patterns, and trigger alerts when anomalies occur.
Community Discussion
No community discussion yet for this question.