Answer is B
Event status
Description
Unhandled
The security event risk is not mitigated or contained, so it is considered open.
Example: an IPS/AV log with action=pass will have the event status Unhandled.
Botnet and IoC events are also considered Unhandled.
Contained
The risk source is isolated.
Example: an AV log with action=quarantine will have the event status Contained.
Mitigated
The security risk is mitigated by being blocked or dropped.
Example: an IPS/AV log with action=block/drop will have the event status Mitigated.
(Blank) Other scenarios.
Answer is B
Event status
Description
Unhandled
The security event risk is not mitigated or contained, so it is considered open.
Example: an IPS/AV log with action=pass will have the event status Unhandled.
Botnet and IoC events are also considered Unhandled.
Contained
The risk source is isolated.
Example: an AV log with action=quarantine will have the event status Contained.
Mitigated
The security risk is mitigated by being blocked or dropped.
Example: an IPS/AV log with action=block/drop will have the event status Mitigated.
(Blank) Other scenarios.
upvoted 1 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
DCT
Highly Voted 4 months, 2 weeks agoHalmonte0780
Most Recent 1 month, 3 weeks ago[Removed]
3 months agoDCT
4 months, 2 weeks ago