Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GIAC Exam GCCC Topic 9 Question 52 Discussion

Actual exam question for GIAC's GCCC exam
Question #: 52
Topic #: 9
[All GCCC Questions]

Acme Corporation is doing a core evaluation of its centralized logging capabilities. Which of the following scenarios indicates a failure in more than one CIS Control?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

Bettina
4 months ago
D is the clear winner here. Undocumented servers? That's like leaving the back door wide open for hackers. Time to put on your CISO cape and fix this logging mess!
upvoted 0 times
...
Eulah
4 months ago
Haha, D all the way! The loghost is probably drowning in a sea of unsynced logs from mystery servers. Someone needs to get their IT house in order at Acme!
upvoted 0 times
...
Jerry
4 months ago
I was gonna say C, but D makes more sense. The loghost being out-of-sync is bad, but the undocumented servers are even worse. Gotta keep that inventory in check, am I right?
upvoted 0 times
...
Ora
4 months ago
I agree, D seems like the best choice here. Having undocumented servers sending logs to the loghost is a real security nightmare!
upvoted 0 times
Lamonica
3 months ago
D) The loghost is receiving out-of-sync logs from undocumented servers
upvoted 0 times
...
Kathrine
4 months ago
A) The loghost is missing logs from 3 servers in the inventory
upvoted 0 times
...
...
Zona
4 months ago
Hmm, I think the correct answer is D. The loghost receiving out-of-sync logs from undocumented servers indicates a failure in more than one CIS Control, like Inventory and Control of Enterprise Assets, and Centralized Log Management.
upvoted 0 times
Noble
3 months ago
C is also a valid option. If the loghost time is out-of-sync with an external host, it could impact the reliability of the logs and the ability to correlate events.
upvoted 0 times
...
Chau
4 months ago
I think B could also be a failure in more than one CIS Control. Having logs from hosts with different timezone values could affect the accuracy and integrity of the logs.
upvoted 0 times
...
Gerald
4 months ago
I agree, D seems like the correct answer. It's important to have control over what servers are sending logs to the loghost.
upvoted 0 times
...
...
Ellen
4 months ago
I agree with Daren, scenario D poses a risk to the integrity of the logs.
upvoted 0 times
...
Daren
5 months ago
But having out-of-sync logs from undocumented servers can lead to security issues.
upvoted 0 times
...
Nickie
5 months ago
I disagree, I believe scenario A is the one that shows a failure in multiple controls.
upvoted 0 times
...
Daren
5 months ago
I think scenario D indicates a failure in more than one CIS Control.
upvoted 0 times
...

Save Cancel