Question 1

Which features of Splunk are crucial for tuning correlation searches?(Choosethree)
  • Question 2

    Which practices improve the effectiveness of security reporting?(Choosethree)
  • Question 3

    Which of the following is a reason to utilize ES risk framework as a part of detection building?
  • Question 4

    The Director of Security would like to understand the operational efficiency of the SOC analysts at a high level. What is a metric that can be used to determine their efficiency?
  • Question 5

    What is the best method to operationalize the results of a threat hunt for daily use by SOC analysts?