CompTIACompTIA
CNX-001 · Question #22
CNX-001 Question #22: Real Exam Question with Answer & Explanation
The correct answer is D: SIEM. A Security Information and Event Management system centralizes log collection from disparate sources and applies correlation rules to generate actionable alerts.
Cloud Network Security
Question
A network security administrator needs to set up a solution to: - Gather all data from log files in a single location. - Correlate the data to generate alerts. Which of the following should the administrator implement?
Options
- ASyslog
- BEvent log monitoring
- CLog management
- DSIEM
Explanation
A Security Information and Event Management system centralizes log collection from disparate sources and applies correlation rules to generate actionable alerts.
Topics
#SIEM#Log Management#Security Monitoring#Alerting
Community Discussion
No community discussion yet for this question.