Well, SOC relies on SIEM and other automation and aggregation tools. If time is off on the devices around the network, then those tools cannot do their job effectively enough or at all. So I'd say it's C. Although, decentralized datacenter would also be a problem since they would not have it integrated into monitoring infrastructure. But then again, I'm assuming too much about the question/scenario, which is wrong approach for the exam.
C.
Log synchronization is critical for correlation and analysis in a SOC. If system clocks are not synchronized, it makes it challenging to correlate events across systems, potentially leading to delayed breach detection. Time discrepancies can hinder the analysis of a security incident's timeline.
team, the greatest problem, among this answers, is the lack of integration, some security systems and devices may not be fully integrated, making it difficult to correlate and analyze data from multiple sources. So, option A.
upvoted 3 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Bl1024
2 months, 3 weeks agoAlexJacobson
9 months, 4 weeks agoMarcovic00
12 months agoKunzle
1 year, 2 months agowickhaarry
1 year, 3 months agoGoseu
1 year, 4 months agorichck102
1 year, 4 months agoCarlPTY07
1 year, 8 months ago