exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 90 discussion

Actual exam question from ISC's CISSP
Question #: 90
Topic #: 1
[All CISSP Questions]

Which of the following ensures old log data is not overwritten?

  • A. Log retention
  • B. Implement Syslog
  • C. Increase log file size
  • D. Log preservation
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
DERCHEF2009
Highly Voted 2 years, 5 months ago
Selected Answer: D
shoud be D
upvoted 8 times
jackdryan
1 year, 9 months ago
D is correct
upvoted 2 times
...
...
Coolwater
Highly Voted 2 years, 4 months ago
For those who are saying "Retention " = retention is something which we define as a date or week or month or year for saving logs or any other kind of data . after the defined period, the data will be overwritten . lets take CCTV data storage as an example. if we are configuring the storage settings for 1 moth , it will only keep 1 month of recent video footage , the old footages will be overwritten . Ans is D
upvoted 8 times
...
zehn
Most Recent 1 month, 2 weeks ago
Selected Answer: D
Question does not regard retention, rather preservation.
upvoted 1 times
...
imather
1 month, 3 weeks ago
Selected Answer: A
A. B and C are not relevant to ensure old log data is not overwritten. According to NIST, log preservation is defined as "Keeping logs that normally would be discarded, because they contain records of activity of particular interest." Log retention is "Archiving logs on a regular basis as part of standard operational activities." D refers to preserving logs specifically because they may have something of interest, whereas A is the regular practice of keeping and storing old logs.
upvoted 1 times
...
nuggetbutts
3 months, 2 weeks ago
Selected Answer: A
The answer is A. D deals primarily with log file integrity.
upvoted 1 times
Bietchasup
2 months, 4 weeks ago
presevation deals with log integrity. Is this not the concern here? if its overwritten you no longer have ingrity. what do you think?
upvoted 1 times
...
...
somsom
3 months, 3 weeks ago
answer is D.
upvoted 1 times
...
deeden
6 months, 3 weeks ago
Selected Answer: A
I would say it should be along the lines of Log retention policy, implementation, and monitoring.
upvoted 1 times
...
MP26
10 months, 1 week ago
Log retention prevents to logs to be overwritten. If retention time is to short than preservation will not help because it keeps overwritten and not completer. Other advantage. It is easier and cheaper. A: is my answer
upvoted 1 times
...
john_boogieman
11 months ago
Selected Answer: A
From OSG: 16. Gavin is considering altering his organization’s 'log retention' policy to delete logs at the end of each day. What is the most important reason that he should avoid this approach? A. An incident may not be discovered for several days and valuable evidence could be lost.
upvoted 1 times
...
Kyanka
11 months, 3 weeks ago
Selected Answer: A
Think like a manager/policy creator: Answer is A.
upvoted 2 times
...
Hongjun
11 months, 3 weeks ago
Selected Answer: D
The organization’s policies and procedures should also address the preservation of original logs. Many organizations send copies of network traffic logs to centralized devices, as well as use tools that analyze and interpret network traffic. So D is correct.
upvoted 2 times
...
InclusiveSTEAM
1 year, 4 months ago
The correct answer is A The answer that best ensures old log data is not overwritten is log retention, option A. Log retention policies and procedures specifically preserve and archive logs for compliance and analysis needs, preventing them from being purged or overwritten. Syslog may provide centralized logging but does not itself retain old logs. Increasing log file size allows storing more events but does not guarantee retaining old data. While log preservation is close, log retention is the most precise term for maintaining archives of old log data.
upvoted 5 times
...
LalithW
1 year, 4 months ago
It says about log overwritten. SO increasing log file size is correct.
upvoted 2 times
...
georgegeorge125487
1 year, 6 months ago
Selected Answer: A
Only log retention exists in CISSP study guide.
upvoted 5 times
...
MShaaban
1 year, 6 months ago
I would go with A
upvoted 1 times
...
janvandermerwer
1 year, 7 months ago
Selected Answer: A
A is correct
upvoted 1 times
...
Bach1968
1 year, 7 months ago
Selected Answer: A
forgot to choose
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago