Question 178
Main Page
You detect unapproved systems sending logs to your SIEM. What’s the most appropriate response?
A. Delete their logs
B. Block SIEM access
C. Investigate data source origin and validate asset ownership
D. Reduce alert severity
Show Answer