While filling out the After Actions Report, an Incident Response Team noted that improved log monitoring could help detect future breaches. What are two examples of how an organization can improve log monitoring to help detect future breaches? (Choose two.)
A) Periodically log into the ATP manager and review only the Dashboard.
B) Implement IT Analytics to create more flexible reporting.
C) Dedicate an administrator to monitor new events as they flow into the ATP manager.
D) Set email notifications in the ATP manager to message the Security team when a new incident is occurring.
E) Implement Syslog to aggregate information from other systems, including ATP, and review log data in a single console.
Correct Answer:
Verified
Q86: Which stage of an Advanced Persistent Threat
Q87: A large company has 150,000 endpoints with
Q88: What is the minimum amount of RAM
Q89: Which stage of an Advanced Persistent Threat
Q90: An Incident Responder has reviewed a STIX
Q92: Which National Institute of Standards and Technology
Q93: An Incident Responder launches a search from
Q94: An Incident Responder discovers an incident where
Q95: Which final steps should an Incident Responder
Q96: Which two actions can an Incident Responder
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents