Topic 2B Flashcards
(4 cards)
1
Q
What are key risk indicators?
A
They are metrics of upper and lower bounds of specific indicators of normal network activity. These indicators may include network logs per second, number of failed remote logins, network bandwidth and outbound email traffic.
2
Q
What is a indicator of compromise?
A
A KRI that exceeds its normal bounds could be an indicator of compromise. An IOC shows that an attack is happening but is in its early stages. IOC information aids others in predictive analysis or discovering an attack before it occurs.
3
Q
A
4
Q
A