Kahoots 3 Flashcards

1
Q

How is an alert communicated?

a. ) Email
b. ) Automatic Scripts
c. ) SNMP
d. ) All the above

A

d.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are some types of SIEM alerts (select 2)

a. ) Abuse of privileges
b. ) Weather report
c. ) Fraud
d. ) Network monitoring

A

a.) & c.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Anomalies rely on the previously established baselines to identify deviations T or F

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Who are dashboards main audiences? (Select 2)

a. ) Executives
b. ) Kids
c. ) Vendors
d. ) Technicians/Analysts

A

a.) & d.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the two primary SOAR features?

a. ) Reduce risk levels
b. ) Security Incident response
c. ) Security Operation Automation
d. ) Notify executives

A

c.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

A SIEM is designed to reduce the need for human intervention during IR

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the goal of the Triage Process

a. ) Identify that there is a threat
b. ) Prioritize incidents
c. ) Identify potential data at risk
d. ) All of the above

A

d.)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

SOAR automates actions upon detection of specific events T or F

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Organizations will use the same playbook for all security incidents T or F

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly