Detection and Response: Quiz 2

Detection and Response: Quiz 2

Professional Development

13 Qs

quiz-placeholder

Similar activities

1) Kursus Teknikal Day 1

1) Kursus Teknikal Day 1

Professional Development

10 Qs

Foundations of Cyber Security: Quiz 2

Foundations of Cyber Security: Quiz 2

Professional Development

10 Qs

ISC2 - Chapter 4 - Module 2

ISC2 - Chapter 4 - Module 2

Professional Development

15 Qs

E-M-DR

E-M-DR

Professional Development

15 Qs

MS900 - Module 4 - Full Quiz

MS900 - Module 4 - Full Quiz

Professional Development

15 Qs

5) Kursus Teknikal Day 3

5) Kursus Teknikal Day 3

Professional Development

15 Qs

Security+ Lesson5

Security+ Lesson5

Professional Development

8 Qs

Componentes de Gobernanza de TI

Componentes de Gobernanza de TI

Professional Development

10 Qs

Detection and Response: Quiz 2

Detection and Response: Quiz 2

Assessment

Quiz

Computers

Professional Development

Hard

Created by

John Coder

FREE Resource

13 questions

Show all answers

1.

FILL IN THE BLANK QUESTION

1 min • 1 pt

doc__________________ is any from of recorded content that is used for a specific purpose and can be audio, digital, or handwritten instructions and even videos.

2.

FILL IN THE BLANK QUESTION

1 min • 1 pt

??? is an application that monitors system and network activity and produces alerts on possible intrusions

3.

FILL IN THE BLANK QUESTION

1 min • 1 pt

Here are examples of ???? tools.

  1. AlienVault, Chronicle, Elastic, Exabeam, IBM QRadar, LogRhythm, Splunk

4.

FILL IN THE BLANK QUESTION

1 min • 1 pt

SIEM tools require data for them to be effectively used. During the first step, the SIEM collects event data from various sources like firewalls, servers, routers. This data is known as logs and contains event details like timestamps, IP addresses. Logs are a record of events that occur within a organization's systems. After all this log data is collected, it gets aggr____________ in one location.

5.

FILL IN THE BLANK QUESTION

1 min • 1 pt

par_____________ maps data according to their fields and corresponding values.

6.

FILL IN THE BLANK QUESTION

1 min • 1 pt

SIEM process

1. collect and agg__________________ data

  1. 2. nor____________ data

    1. 3. ana_____________

7.

FILL IN THE BLANK QUESTION

1 min • 1 pt

an IPS or ? ? ? is an application that monitors system activity for intrusive activity and takes action to stop activity. It is similar to IDS but IPS takes action to prevent the activity and minimize its effects. An IPS can send an alert and modify an access control list on a router to block specific traffic on a server.

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?