Free 312-39 Exam Braindumps (page: 6)

Page 5 of 26

An organization is implementing and deploying the SIEM with following capabilities.


What kind of SIEM deployment architecture the organization is planning to implement?

  1. Cloud, MSSP Managed
  2. Self-hosted, Jointly Managed
  3. Self-hosted, Self-Managed
  4. Self-hosted, MSSP Managed

Answer(s): A



What is the process of monitoring and capturing all data packets passing through a given network using different tools?

  1. Network Scanning
  2. DNS Footprinting
  3. Network Sniffing
  4. Port Scanning

Answer(s): C


Reference:

https://www.greycampus.com/opencampus/ethical-hacking/sniffing-and-its-types



Which of the following is a report writing tool that will help incident handlers to generate efficient reports on detected incidents during incident response process?

  1. threat_note
  2. MagicTree
  3. IntelMQ
  4. Malstrom

Answer(s): C



Which of the following Windows features is used to enable Security Auditing in Windows?

  1. Bitlocker
  2. Windows Firewall
  3. Local Group Policy Editor
  4. Windows Defender

Answer(s): C


Reference:

https://resources.infosecinstitute.com/topic/how-to-audit-windows-10-application-logs/






Post your Comments and Discuss EC-Council 312-39 exam with other Community members:

312-39 Discussions & Posts