312-39 Exam Question 26

Which of the following are the responsibilities of SIEM Agents?
1.Collecting data received from various devices sending data to SIEM before forwarding it to the central engine.
2.Normalizing data received from various devices sending data to SIEM before forwarding it to the central engine.
3.Co-relating data received from various devices sending data to SIEM before forwarding it to the central engine.
4.Visualizing data received from various devices sending data to SIEM before forwarding it to the central engine.
  • 312-39 Exam Question 27

    John as a SOC analyst is worried about the amount of Tor traffic hitting the network. He wants to prepare a dashboard in the SIEM to get a graph to identify the locations from where the TOR traffic is coming.
    Which of the following data source will he use to prepare the dashboard?
  • 312-39 Exam Question 28

    Which of the following tool is used to recover from web application incident?
  • 312-39 Exam Question 29

    In which log collection mechanism, the system or application sends log records either on the local disk or over the network.
  • 312-39 Exam Question 30

    Which of the following technique protects from flooding attacks originated from the valid prefixes (IP addresses) so that they can be traced to its true source?