exam questions

Exam CS0-003 All Questions

View all questions & answers for the CS0-003 exam

Exam CS0-003 topic 1 question 177 discussion

Actual exam question from CompTIA's CS0-003
Question #: 177
Topic #: 1
[All CS0-003 Questions]

After a security assessment was done by a third-party consulting firm, the cybersecurity program recommended integrating DLP and CASE to reduce analyst alert fatigue. Which of the following is the best possible outcome that this effort hopes to achieve?

  • A. SIEM ingestion logs are reduced by 20%.
  • B. Phishing alerts drop by 20%.
  • C. False positive rates drop to 20%.
  • D. The MTTR decreases by 20%.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
julessandrin
Highly Voted 1 year, 1 month ago
Selected Answer: C
I passed exam today March 9, 2024, this was in the exam
upvoted 18 times
...
FT000
Highly Voted 1 year, 1 month ago
Selected Answer: C
If the goal is to reduce analyst alert fatigue, then the hope is to reduce the rate of false positives. Hence, C.
upvoted 9 times
...
braveheart22
Most Recent 2 months, 2 weeks ago
Selected Answer: D
The best possible outcome of integrating Data Loss Prevention (DLP) and Cybersecurity Automation & Security Orchestration (CASE) to reduce analyst alert fatigue is: Option D The MTTR (Mean Time To Respond) decreases by 20%, from my point of view. Explanation: Mean Time to Respond (MTTR) measures how quickly security teams can investigate and mitigate threats. Integrating DLP (which helps prevent data exfiltration) and CASE (which automates security operations and orchestrates responses) improves efficiency by reducing manual workload, streamlining responses, and prioritizing critical alerts. This leads to faster incident resolution, which directly reduces MTTR.
upvoted 1 times
...
Learner213
4 months, 3 weeks ago
Selected Answer: D
The MTTR (Mean Time to Resolution) decreases by 20% is the best possible outcome that this effort hopes to achieve, as it reflects the improvement in the efficiency and effectiveness of the incident response process by reducing analyst alert fatigue.
upvoted 1 times
...
cy_analyst
6 months, 2 weeks ago
Selected Answer: D
Reducing false positives is important, but the more meaningful outcome would be how this impacts the overall efficiency and effectiveness of the team, which is measured by MTTR.
upvoted 2 times
...
gomet2000
8 months, 1 week ago
Selected Answer: C
Reducing the rate of false positives is directly tied to reducing alert fatigue. Analysts spend a significant amount of time dealing with false positives, which can lead to burnout and missed genuine threats. By lowering the false positive rate, the quality of alerts improves, making the analysts work more efficient.
upvoted 3 times
...
Brick69
1 year, 1 month ago
Selected Answer: C
Nothing worse than investigating FPs over and over
upvoted 7 times
...
Jhonattan0032
1 year, 2 months ago
Selected Answer: D
The MTTR (Mean Time To Respond) decreases by 20%
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago