Question: Why is archiving historical log and network traffic data important for a SIEM? Group of answer choices A . To meet compliance requirements and enable
Why is archiving historical log and network traffic data important for a SIEM?
Group of answer choices
A To meet compliance requirements and enable retrospective incident investigation
B To optimise SIEM performance for live analysis
C To reduce the number of false positives in alert generation
D To automatically classify events and prioritise alerts
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
