🔍

CompTIA SecurityX (CAS-005) CAS-005 — Question 144

Topic 1 · Question 144 of 393

Topic 1 · Question 144

A security engineer receives an alert from the SIEM platform indicating a possible malicious action on the internal network. The engineer generates a report that outputs the logs associated with the incident: Which of the following actions best enables the engineer to investigate further?

Exhibit 1 for question 144

View community discussion →