The historical ACE function allows the user to perform retrospective correlations on older data. In which of the following devices is the data located that the historical correlation engine uses?
Correct Answer:
A
🗳️
When preparing to apply a patch to the Enterprise Security Manager (ESM) and completing the ESM checklist, the command cat/proc/mdstat has been issued to determine RAID functionally. The system returns an active drive result identified as [U_]. What action should be taken?
Correct Answer:
D
🗳️
References:
https://raid.wiki.kernel.org/index.php/Mdstat
The McAfee Advanced Correlation Engine (ACE) can be deployed in one of two modes which are
Correct Answer:
D
🗳️
References:
http://www.mcafee.com/uk/products/advanced-correlation-engine.aspx
The Database Event Monitor (DEM) appliance prevents disclosure of Personally Identifiable Information (PII) by employing which of the following features to those types of information?
Correct Answer:
C
🗳️