Intermediate Cybersecurity & Cryptography
Q66 / 100

What is SIEM (Security Information and Event Management)?

Correct! Well done.

Incorrect.

The correct answer is B) A platform aggregating and correlating security events from multiple sources in real-time to detect threats and support incident response

B

Correct Answer

A platform aggregating and correlating security events from multiple sources in real-time to detect threats and support incident response

Explanation

SIEMs (Splunk, IBM QRadar, Elastic SIEM) collect logs from firewalls, IDS, endpoints, and cloud services. Correlation rules and machine learning detect anomalies and generate alerts for SOC analysts.

Progress
66/100