Question 46
Identify the event severity level in Windows logs for the events that are not necessarily significant, but may indicate a possible future problem.
Question 47
Which of the following technique protects from flooding attacks originated from the valid prefixes (IP addresses) so that they can be traced to its true source?
Question 48
Which of the following formula represents the risk levels?
Question 49
An organization wants to implement a SIEM deployment architecture. However, they have the capability to do only log collection and the rest of the SIEM functions must be managed by an MSSP.
Which SIEM deployment architecture will the organization adopt?

