An organization wants to enable the correlation and analysis of security-related events and other recorded data and to support investigations into information security incidents. Which control should it implement?
I was leaning towards C) Installation of software on operational systems, but I can see how that might not be the best control for security incident investigations. B) seems like the more appropriate choice.
I think the answer is B) Clock synchronization. Correlating security events across systems requires accurate time stamps, so clock synchronization is crucial.
Linn
2 months agoDominque
2 months agoElina
2 months agoIluminada
8 days agoStefany
20 days agoFrancesco
28 days agoAngelyn
2 months agoIlene
24 days agoRonald
27 days agoLennie
29 days agoHortencia
2 months agoJade
3 months agoTheodora
3 months ago