exam questions

Exam CS0-003 All Questions

View all questions & answers for the CS0-003 exam

Exam CS0-003 topic 1 question 200 discussion

Actual exam question from CompTIA's CS0-003
Question #: 200
Topic #: 1
[All CS0-003 Questions]

The Chief Information Security Officer for an organization recently received approval to install a new EDR solution. Following the installation, the number of alerts that require remediation by an analyst has tripled. Which of the following should the organization utilize to best centralize the workload for the internal security team? (Choose two.)

  • A. SOAR
  • B. SIEM
  • C. MSP
  • D. NGFW
  • E. XDR
  • F. DLP
Show Suggested Answer Hide Answer
Suggested Answer: AB 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
section8santa
Highly Voted 6 months, 2 weeks ago
Selected Answer: AB
Trust used chatgpt
upvoted 6 times
...
Thunder_Cat
Most Recent 2 weeks, 3 days ago
Selected Answer: BE
I don't know why the others are saying A. SOAR (security orchestration, automation, and response) does not focus on centralizing the workload. XDR (extended detection and reporting) extends EDR's capabilities which would help in correlate alerts and automate responses, ultimately helping the security team manage large volumes of alerts.
upvoted 1 times
...
spamsoc
7 months, 2 weeks ago
A and B
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago