NEW
Font size
S
M
L
XL
WorksheetsDay 10 - blue team
Total questions: 5
Worksheet time: 3mins
Name
Class
Date
1.
What is the primary goal of SIEM?
a)
Automate system backups
b)
Collect, analyze, and respond to security events
c)
Encrypt network traffic
2.
Which type of log is commonly collected by SIEM systems?
a)
Weather logs
b)
CPU temperature logs
c)
DNS logs
3.
What does data normalization in SIEM achieve?
a)
Converts logs into encrypted format
b)
Standardizes logs into a unified structure for analysis
c)
Deletes unnecessary logs
4.
Which tool is used to detect malware patterns in files?
a)
Sigma
b)
YARA
c)
NetFlow
5.
What does MITRE ATT&CK provide for SIEM teams?
a)
A list of antivirus vendors
b)
A framework of attacker techniques and tactics
c)
A database of cloud services
Reset
