Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 90 discussion

Actual exam question from ISC's CISSP
Question #: 90
Topic #: 1
[All CISSP Questions]

Which of the following ensures old log data is not overwritten?

  • A. Log retention
  • B. Implement Syslog
  • C. Increase log file size
  • D. Log preservation
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
DERCHEF2009
Highly Voted 2 years, 2 months ago
Selected Answer: D
shoud be D
upvoted 7 times
jackdryan
1 year, 6 months ago
D is correct
upvoted 1 times
...
...
Coolwater
Highly Voted 2 years, 1 month ago
For those who are saying "Retention " = retention is something which we define as a date or week or month or year for saving logs or any other kind of data . after the defined period, the data will be overwritten . lets take CCTV data storage as an example. if we are configuring the storage settings for 1 moth , it will only keep 1 month of recent video footage , the old footages will be overwritten . Ans is D
upvoted 7 times
...
nuggetbutts
Most Recent 2 weeks, 2 days ago
Selected Answer: A
The answer is A. D deals primarily with log file integrity.
upvoted 1 times
...
somsom
2 weeks, 5 days ago
answer is D.
upvoted 1 times
...
deeden
3 months, 2 weeks ago
Selected Answer: A
I would say it should be along the lines of Log retention policy, implementation, and monitoring.
upvoted 1 times
...
MP26
7 months, 1 week ago
Log retention prevents to logs to be overwritten. If retention time is to short than preservation will not help because it keeps overwritten and not completer. Other advantage. It is easier and cheaper. A: is my answer
upvoted 1 times
...
john_boogieman
8 months ago
Selected Answer: A
From OSG: 16. Gavin is considering altering his organization’s 'log retention' policy to delete logs at the end of each day. What is the most important reason that he should avoid this approach? A. An incident may not be discovered for several days and valuable evidence could be lost.
upvoted 1 times
...
Kyanka
8 months, 3 weeks ago
Selected Answer: A
Think like a manager/policy creator: Answer is A.
upvoted 2 times
...
Hongjun
8 months, 3 weeks ago
Selected Answer: D
The organization’s policies and procedures should also address the preservation of original logs. Many organizations send copies of network traffic logs to centralized devices, as well as use tools that analyze and interpret network traffic. So D is correct.
upvoted 2 times
...
InclusiveSTEAM
1 year, 1 month ago
The correct answer is A The answer that best ensures old log data is not overwritten is log retention, option A. Log retention policies and procedures specifically preserve and archive logs for compliance and analysis needs, preventing them from being purged or overwritten. Syslog may provide centralized logging but does not itself retain old logs. Increasing log file size allows storing more events but does not guarantee retaining old data. While log preservation is close, log retention is the most precise term for maintaining archives of old log data.
upvoted 4 times
...
LalithW
1 year, 1 month ago
It says about log overwritten. SO increasing log file size is correct.
upvoted 2 times
...
georgegeorge125487
1 year, 3 months ago
Selected Answer: A
Only log retention exists in CISSP study guide.
upvoted 5 times
...
MShaaban
1 year, 3 months ago
I would go with A
upvoted 1 times
...
janvandermerwer
1 year, 4 months ago
Selected Answer: A
A is correct
upvoted 1 times
...
Bach1968
1 year, 4 months ago
Selected Answer: A
forgot to choose
upvoted 2 times
...
Bach1968
1 year, 4 months ago
i have to go with A. Log retention. Log retention refers to the practice of storing log data for a specified period of time. It ensures that old log data is not overwritten or deleted, allowing for historical analysis, forensic investigations, compliance requirements, and detection of security incidents. By defining and implementing log retention policies, organizations can establish guidelines for how long log data should be retained based on regulatory requirements, business needs, and security considerations. This helps in preserving log data for future reference and maintaining a comprehensive audit trail of system activities. this is why ? Increasing the log file size does not ensure that old log data is not overwritten. It simply allows for a larger storage capacity for log data. However, once the log file reaches its maximum size, new log entries may still overwrite the oldest entries. On the other hand, log retention is a specific practice of preserving log data for a specified period of time, ensuring that it is not overwritten or deleted. This allows for the availability of historical logs for analysis, compliance, and security purposes. Therefore, log retention is the appropriate answer to ensure that old log data is not overwritten.
upvoted 3 times
...
Dee83
1 year, 10 months ago
A. Log retention Log retention is the practice of keeping log data for a certain period of time. It ensures that old log data is not overwritten, and it can be used for analysis, troubleshooting, and compliance purposes. The retention period can be set according to the organization's needs, and it can be defined as a number of days, weeks, or months.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...