اختبار شهادة محلل الأمن السيبراني CompTIA CySA+

السؤال 93 من 1040

كل الأسئلة

Which of the following techniques can help a SOC team to reduce the number of alerts related
to the internal security activities that the analysts have to triage?

الخيارات

  • A Enrich the SIEM-ingested data to include all data required for triage.
  • B Schedule a task to disable alerting when vulnerability scans are executing.
  • C Filter all alarms in the SIEM with low severity.
  • D Add a SOAR rule to drop irrelevant and duplicated notifications.

النقاشات

لا توجد نقاشات منشورة لهذا السؤال حالياً.