Which of the following controls would BEST identify and report malicious insider activities?
Anintrusion detection system(IDS; alsointrusion protection systemorIPS) is a device or software application that monitors a network or systems for malicious activity or policy violations.[1]Any intrusion activity or violation is typically reported either to an administrator or collected centrally using asecurity information and event management (SIEM)system. A SIEM system combines outputs from multiple sources and uses alarm filtering techniques to distinguish malicious activity from false alarms.
Limited Time Offer
25%
Off
Currently there are no comments in this discussion, be the first to comment!
Currently there are no comments in this discussion, be the first to comment!