Security Monitoring - CompTIA Security+ SY0-701 - 4.4

0.0(0)
Studied by 0 people
call kaiCall Kai
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/7

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 5:48 AM on 4/1/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai

No analytics yet

Send a link to your students to track their progress

8 Terms

1
New cards

Security monitoring

• The attackers never sleep - 24/7/365

• Monitor all entry points

- Logins, publicly available services, data storage

locations, remote access

• React to security events

- Account access, firewall rulebase, additional scanning

• Status dashboards

- Get the status of all systems at a glance

2
New cards

Monitoring computing resources

• Systems

- Authentication - logins from strange places

- Server monitoring - Service activity, backups, software

versions

• Applications

- Availability - Uptime and response times

- Data transfers - increases or decreases in rates

- Security notifications - From the developer/

manufacturer

• Infrastructure

- Remote access systems - Employees, vendors, guests

- Firewall and IPS reports - Increase or type of attack

3
New cards

Log aggregation

• SIEM or SEM (Security Information and Event Manager)

- Consolidate many different logs to a central database

- Servers, firewalls, VPN concentrators, SANs, cloud

services

• Centralized reporting

- All information in one place

• Correlation between diverse systems

- View authentication and access

- Track application access

- Measure and report on data transfers

4
New cards

Scanning

A constantly changing threat landscape

- New vulnerabilities discovered daily

- Many different business applications and services

- Systems and people are always moving

Actively check systems and devices

- Operating system types and versions

- Device driver versions

- Installed applications

- Potential anomalies

Gather the raw details

- A valuable database of information

5
New cards

Reporting

Analyze the collected data

- Create actionable reports

Status information

- Number of devices up to date/in compliance

- Devices running older operating systems

Determine the next best steps

- A new vuknerability is announced

- How many systems may be vulnerable?

Ad hoc information summaries

- Prepare for the unknown

6
New cards

Archiving

It takes an average of about 9 months for a company to identify and contain a breach

- IBM security report, 2022

Access to data is critical

- Archive over an extended period

May have a mandate

- State or federal law

- Or organizational requirements

7
New cards

Alerting

Real-time notification of security events

- Increase in authentication errors

- Large file transfers

Actionable data

- Keep the right people informed

- Enable quick responses and status information

Notification methods

- SMS/text

- Email

- Security console/SOC

8
New cards

Alert response and remediation

• Quarantine

- A foundational security response

- Prevent a potential security issue from spreading

• Alert tuning

- A balancing act

- Prevent false positives and false negatives

• An alert should be accurate

- This is an ongoing process

- The tuning gets better as time goes on

Explore top notes

note
historical globalization figures
Updated 1082d ago
0.0(0)
note
~The Phagocytic System~
Updated 536d ago
0.0(0)
note
4.8-4.10 Presentation
Updated 113d ago
0.0(0)
note
States of matter
Updated 1246d ago
0.0(0)
note
Chapter 6: Learning
Updated 1090d ago
0.0(0)
note
GEC1-LESSON 3
Updated 569d ago
0.0(0)
note
historical globalization figures
Updated 1082d ago
0.0(0)
note
~The Phagocytic System~
Updated 536d ago
0.0(0)
note
4.8-4.10 Presentation
Updated 113d ago
0.0(0)
note
States of matter
Updated 1246d ago
0.0(0)
note
Chapter 6: Learning
Updated 1090d ago
0.0(0)
note
GEC1-LESSON 3
Updated 569d ago
0.0(0)

Explore top flashcards

flashcards
Wat een taal zeg
91
Updated 1221d ago
0.0(0)
flashcards
Sp4 Un1A (23-24) | El arte
30
Updated 952d ago
0.0(0)
flashcards
Linear Algebra Final Review
47
Updated 471d ago
0.0(0)
flashcards
Odyssey Terms
35
Updated 1240d ago
0.0(0)
flashcards
is 117 final quiz review
44
Updated 1204d ago
0.0(0)
flashcards
Passe Compose
54
Updated 1147d ago
0.0(0)
flashcards
Wat een taal zeg
91
Updated 1221d ago
0.0(0)
flashcards
Sp4 Un1A (23-24) | El arte
30
Updated 952d ago
0.0(0)
flashcards
Linear Algebra Final Review
47
Updated 471d ago
0.0(0)
flashcards
Odyssey Terms
35
Updated 1240d ago
0.0(0)
flashcards
is 117 final quiz review
44
Updated 1204d ago
0.0(0)
flashcards
Passe Compose
54
Updated 1147d ago
0.0(0)