Question 81

According to the Risk Matrix table, what will be the risk level when the probability of an attack is very high, and the impact of that attack is major?
NOTE: It is mandatory to answer the question before proceeding to the next one.
  • Question 82

    Where will you find the reputation IP database, if you want to monitor traffic from known bad IP reputation using OSSIM SIEM?
  • Question 83

    An organization is implementing and deploying the SIEM with following capabilities.

    What kind of SIEM deployment architecture the organization is planning to implement?
  • Question 84

    Which of the following tool can be used to filter web requests associated with the SQL Injection attack?
  • Question 85

    An attacker attempts to gain unauthorized access to a secure network by repeatedly guessing login credentials.
    The SIEM is configured to generate an alert after detecting 10 consecutive failed login attempts within a short timeframe. However, the attacker successfully logs in on the 9th attempt, just before the threshold is reached, bypassing the alert mechanism. The security team only becomes aware of the incident after detecting suspicious activity post-login, highlighting a gap in the SIEM's detection rules. What type of alert classification does this represent?