Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

CompTIA Security+ Exam 2026 SY0-701 Question # 218 Topic 22 Discussion

CompTIA Security+ Exam 2026 SY0-701 Question # 218 Topic 22 Discussion

SY0-701 Exam Topic 22 Question 218 Discussion:
Question #: 218
Topic #: 22

A security analyst is reviewing alerts in the SIEM related to potential malicious network traffic coming from an employee’s corporate laptop. The security analyst has determined that additional data about the executable running on the machine is necessary to continue the investigation. Which of the following logs should the analyst use as a data source?


A.

Application


B.

IPS/IDS


C.

Network


D.

Endpoint


Get Premium SY0-701 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.