SIEM Deployment Architectures

0.0(0)
studied byStudied by 0 people
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
Card Sorting

1/10

encourage image

There's no tags or description

Looks like no tags are added yet.

Study Analytics
Name
Mastery
Learn
Test
Matching
Spaced

No study sessions yet.

11 Terms

1
New cards

What factors impact the choice of SIEM deployment architecture?

Factors include the number of log sources, amount of data, network topology, and regulatory compliance issues.

2
New cards

Self-Hosted, Self-Managed

The organization manages all aspects of the SIEM, from visualization and alerting to data retention.

3
New cards

Self-Hosted, MSSP Managed

The organization is responsible for data collection, while an MSSP handles the rest of the SIEM functions.

4
New cards

Self-Hosted, Jointly Managed

The organization handles data collection and aggregation, while the MSSP manages correlation, analytics, reporting, and retention.

5
New cards

Cloud, MSSP Managed

The MSSP manages the SIEM, which is hosted in the cloud.

6
New cards

Cloud, Jointly Managed

The organization and the MSSP share responsibility for managing the SIEM, which is hosted in the cloud.

7
New cards

Cloud, Self-Managed

The organization manages all aspects of the SIEM, which is hosted in the cloud.

8
New cards

Hybrid Module, Jointly Managed

The organization and the MSSP share responsibility for managing the SIEM, using a hybrid of on-premises and cloud resources.

9
New cards

Fill in the Blank: In a SIEM deployment architecture, __________ is when the organization manages all aspects, including data retention.

Self-Hosted, Self-Managed.

10
New cards

Fill in the Blank: In __________ deployment, the MSSP manages the SIEM which is hosted in the cloud.

Cloud, MSSP Managed.

11
New cards

Fill in the Blank: With __________, the organization and MSSP share responsibility for a hybrid SIEM solution.

Hybrid Module, Jointly Managed.