Acme Corporation is doing a core evaluation of its centralized logging capabilities. Which of the following scenarios indicates a failure in more than one CIS Control?
D is the clear winner here. Undocumented servers? That's like leaving the back door wide open for hackers. Time to put on your CISO cape and fix this logging mess!
Haha, D all the way! The loghost is probably drowning in a sea of unsynced logs from mystery servers. Someone needs to get their IT house in order at Acme!
I was gonna say C, but D makes more sense. The loghost being out-of-sync is bad, but the undocumented servers are even worse. Gotta keep that inventory in check, am I right?
Hmm, I think the correct answer is D. The loghost receiving out-of-sync logs from undocumented servers indicates a failure in more than one CIS Control, like Inventory and Control of Enterprise Assets, and Centralized Log Management.
C is also a valid option. If the loghost time is out-of-sync with an external host, it could impact the reliability of the logs and the ability to correlate events.
I think B could also be a failure in more than one CIS Control. Having logs from hosts with different timezone values could affect the accuracy and integrity of the logs.
Bettina
4 months agoEulah
4 months agoJerry
4 months agoOra
4 months agoLamonica
3 months agoKathrine
4 months agoZona
4 months agoNoble
3 months agoChau
4 months agoGerald
4 months agoEllen
4 months agoDaren
5 months agoNickie
5 months agoDaren
5 months ago