You are on page 1of 12

3/22/2020 SIEM Quiz - Exabeam

 

CH10: SIEM ESSENTIALS QUIZ

Congratulations!
You’ve finished the quiz with a score of: 25 / 25 points

Share your score on

   

RESTART QUIZ

Quiz Summary

Q1
Which of the following is NOT an event streaming protocol?

STIX

Learn More 1pts


https://www.exabeam.com/siem-guide/siem-quiz/ 1/12
3/22/2020 SIEM Quiz - Exabeam

 

Q2
What is the underlying format for the Common Event Format (CEF)

Syslog

Learn More 1pts

Q3
Which of the following best describes "a field that uses statistical techniques to
allow machines to learn without being explicitly programmed"?

Machine Learning

Learn More 1pts

Q4
What is the primary use case for deep learning in security?

Packet inspection

Learn More 1pts

Q5
What is the term for "machine-driven execution of actions on security tools and
IT systems, as part of a response to an incident"?

https://www.exabeam.com/siem-guide/siem-quiz/ 2/12
3/22/2020 SIEM Quiz - Exabeam

Automation
 
Learn More 1pts

Q6
What is the metric used in SOCs that measures how long compromises, on
average, have been present?

MTTD

Learn More 1pts

Q7
What does MDR stand for?

Managed Detection and Response

Learn More 1pts

Q8
A threat hunter and subject matter expert would be called a?

Tier 3 analyst

Learn More 1pts

Q9
https://www.exabeam.com/siem-guide/siem-quiz/ 3/12
3/22/2020 SIEM Quiz - Exabeam

Which security technology takes user behavior into account when making

determinations? 

UEBA

Learn More 1pts

Q10
Which analyst coined the term SIEM?

Gartner

Learn More 1pts

Q11
What two new capabilities distinguish Next-Gen SIEM from SIEM? (Choose two)

SOAR UEBA

Learn More 1pts

Q12
What are examples of SIEM logging sources?

All of the above

Learn More 1pts

https://www.exabeam.com/siem-guide/siem-quiz/ 4/12
3/22/2020 SIEM Quiz - Exabeam

 Q13 

Allowing for headroom and growth, what percentage over expected events per
second (EPS) capacity is recommended by SANS?

20%

Learn More 1pts

Q14
Of the following, which has the highest EPS?

Windows Domain Controllers

Learn More 1pts

Q15
Merging events containing different data into a reduced format which contains
common event attributes is called?

Normalization

Learn More 1pts

Q16
The process of creating profiles that model standard behavior for users and
entities in an IT environment is called?

Baselining

https://www.exabeam.com/siem-guide/siem-quiz/ 5/12
3/22/2020 SIEM Quiz - Exabeam

Learn More 1pts


 

Q17
Which would not be used to describe the analytic techniques used in UEBA?

Deterministic

Learn More 1pts

Q18
Which is not a tenet of GDPR?

Perimeter security

Learn More 1pts

Q19
Which are signs of an insider threat?

All of the above

Learn More 1pts

Q20
Unsupervised machine learning is best suited to understanding whether
observed behavior is good or bad.

https://www.exabeam.com/siem-guide/siem-quiz/ 6/12
3/22/2020 SIEM Quiz - Exabeam

False
 

Learn More 1pts

Q21
Implementing a SecOps process where the security team is engaged earlier by
engaging with IT operations is referred to as

Shifting left

Learn More 1pts

Q22
A Virtual SOC can also be referred to as

MSSP

Learn More 1pts

Q23
Which of the following is NOT an open source tool?

Arcsight

Learn More 1pts

https://www.exabeam.com/siem-guide/siem-quiz/
Q2 7/12
3/22/2020 SIEM Quiz - Exabeam

What does MTTD stand for?


Q24
 

Mean Time to Detect

Learn More 1pts

Q25
Where are Linux system logs found?

/var/log

Learn More 1pts

Prev

Evaluating and Selecting SIEM Tools - A Buyer's Guide

CH01

What is SIEM
Components, best practices, and next-gen capabilities

READ MORE

CH02

SIEM Architecture
How SIEMs are built, how they generate insights, and how they are changing

https://www.exabeam.com/siem-guide/siem-quiz/ 8/12
3/22/2020 SIEM Quiz - Exabeam

READ
 MORE 

CH03

Events and Logs


SIEM under the hood - the anatomy of security events and system logs

READ MORE

CH04

UEBA
User and Entity Behavioral Analytics detects threats other tools can’t see

READ MORE

CH05

SIEM Use Cases


Beyond alerting and compliance - SIEMs for insider threats, threat hunting and IoT

READ MORE

CH06

SIEM Analytics
From correlation rules and attack signatures to automated detection via machine
learning

READ MORE

CH07

Incident Response and Automation

https://www.exabeam.com/siem-guide/siem-quiz/ 9/12
3/22/2020 SIEM Quiz - Exabeam

Security Automation and Orchestration (SOAR) - the future of incident response


 
READ MORE

CH08

The SOC, SecOps and SIEM


A comprehensive guide to the modern SOC - SecOps and next-gen tech

READ MORE

CH09

Evaluating and Selecting SIEM Tools - A Buyer's Guide


Evaluation criteria, build vs. buy, cost considerations and compliance

READ MORE

CH10

SIEM Essentials Quiz


SIEM Essentials Quiz

READ MORE

PRODUCT
Exabeam Advanced Analytics

Exabeam Cloud Connectors

Exabeam Data Lake

Exabeam Entity Analytics

Exabeam Incident Responder

Exabeam Threat Hunter

https://www.exabeam.com/siem-guide/siem-quiz/ 10/12
3/22/2020 SIEM Quiz - Exabeam

Exabeam Threat Intelligence Service


 
Exabeam Cloud Platform

Cloud Deployment Options

PARTNERS
Resellers

Services Partners

SOLUTIONS
Compliance

Threat Detection

Cloud Security

IoT Monitoring

SOC Automation

ABOUT
Media Kit

SUPPORT
EXABEAM COMMUNITY
CAREERS

LEARN
Library

Newsroom

Glossary

SIEM Cost Comparison

Exabeam vs Competitors

Analyst Corner

BLOG
Information Security

SIEM
https://www.exabeam.com/siem-guide/siem-quiz/ 11/12
3/22/2020 SIEM Quiz - Exabeam

 UEBA

Security Operations Center

DLP

Incident Response

SIEM GUIDE
What is SIEM?

SIEM Architecture

Events and Logs

UEBA

SIEM Use Cases

SIEM Analytics

The SOC, SecOps and SIEM

Incident Response and Automation

SIEM Buyerʼs Guide

SIEM Essentials Quiz

SIEM Concepts

CONTACT
1051 E. Hillsdale Blvd. 4th Floor Foster City, CA 94404

1.844.EXABEAM
info@exabeam.com

    

© 2020 Exabeam
Terms and Conditions — Privacy Policy — Ethical Trading Policy — Sitemap

https://www.exabeam.com/siem-guide/siem-quiz/ 12/12

You might also like