SY0-701 · Question #571
Which of the following tools is best for logging and monitoring in a cloud environment?
The correct answer is D. SIEM. SIEM (Security Information and Event Management) is purpose-built for centralized log collection, real-time monitoring, correlation of security events, and alerting across cloud and on-premises environments - making it the ideal fit for logging and monitoring at scale. A. IPS…
Question
Which of the following tools is best for logging and monitoring in a cloud environment?
Options
- AIPS
- BFIM
- CNAC
- DSIEM
How the community answered
(45 responses)- B4% (2)
- C2% (1)
- D93% (42)
Explanation
SIEM (Security Information and Event Management) is purpose-built for centralized log collection, real-time monitoring, correlation of security events, and alerting across cloud and on-premises environments - making it the ideal fit for logging and monitoring at scale.
- A. IPS (Intrusion Prevention System) actively blocks malicious network traffic in real time; it detects and stops threats but does not aggregate logs or provide broad monitoring dashboards.
- B. FIM (File Integrity Monitoring) tracks unauthorized changes to files and configurations; it's a narrow monitoring function, not a general-purpose logging platform.
- C. NAC (Network Access Control) enforces who and what can connect to the network; it controls access, not log management or event correlation.
Memory tip: Think SIEM = "See Everything In Motion" - it collects, stores, and correlates logs from across your entire environment, which is exactly what cloud monitoring requires.
Topics
Community Discussion
No community discussion yet for this question.