CompTIA SecurityX (CAS-005) CAS-005 — Question 144
Topic 1 · Question 144 of 393
Topic 1 · Question 144
A security engineer receives an alert from the SIEM platform indicating a possible malicious action on the internal network. The engineer generates a report that outputs the logs associated with the incident: Which of the following actions best enables the engineer to investigate further?
