Question: When configuring notification settings in QRadar EDR, you can create forwarding rules to send alert data from the Hive Brain to external solutions, such as
When configuring notification settings in QRadar EDR, you can create forwarding rules to send alert data from the Hive Brain to external solutions, such as a security information and event management (SIEM) system or a remote syslog server. These alerts are not sent in real-time, but in a pre-configured interval. How long is that interval? Question 28 Answer 30-minute interval 10-minute interval 5-minute interval 1-minute interval
Step by Step Solution
There are 3 Steps involved in it
Get step-by-step solutions from verified subject matter experts
