Center) Assessment 2022 with complete solution
Which is not a top-three wish for Security Operations Engineers?
A. Reduce the number of alerts flowing into the SOC
B. Access tools to quickly investigate threats
C. Lessen the time required to take to contain a breach
D. Use previous incidents to prevent future attacks
D
Which element is a tool to assist organizations in aggregating, correlating, and
analyzing threat data from multiple sources?
Threat Intelligence Platform
Which element of the People pillar focuses on retaining staff members?
Career Path Progression
Which business objective includes details about how the Security Operations
organization will achieve its goals?
Planning
Which pillar enables you to anticipate, prepare, and react to changes in security
operations?
Visibility
Which metric has skewed results that may cause analysts to "cherry-pick"
incidents?
Number of incidents handled
Which business objective dictates how to measure "performance" against the
defined and socialized mission statement?
Governance
Which element of the Processes pillar is rooted in revisiting prior incidents?
Capability Improvement
Which element refers to technologies that enable organizations to collect inputs
monitored by the Security Operations team?
SOAR
How is SOAR different from SIEM?
It ingests alerts and drives them to response
SOAR
Security Orchestration, Automation, and Response
SIEM
Security Information and Event Management
Which element of the Processes pillar is part of the Identification function?
Initial Research
How often should tabletop exercises be performed?
Once a quarter
Which pillar defines the step-by-step instructions and functions that will be
carried out?
Processes