Which of the following in the incident response process is the BEST approach to improve the speed of the identification phase?

QuestionsCategory: SY0-601Which of the following in the incident response process is the BEST approach to improve the speed of the identification phase?
Admin Staff asked 1 year ago
Which of the following in the incident response process is the BEST approach to improve the speed of the identification phase?

A. Activate verbose logging in all critical assets.

B. Tune monitoring in order to reduce false positive rates.

C. Redirect all events to multiple syslog servers.

D. Increase the number of sensors present on the environment.





 

Correct Answer: B

This question is in SY0-601 exam
For getting CompTIA Security+ certificate


Next Post

Recommended

Welcome Back!

Login to your account below

Create New Account!

Fill the forms below to register

Retrieve your password

Please enter your username or email address to reset your password.