Splunk Enterprise Security Certified Admin Exam SPLK-3001 Question # 3 Topic 1 Discussion

Splunk Enterprise Security Certified Admin Exam SPLK-3001 Question # 3 Topic 1 Discussion

SPLK-3001 Exam Topic 1 Question 3 Discussion:
Question #: 3
Topic #: 1

Which of the following ES features would a security analyst use while investigating a network anomaly notable?


A.

Correlation editor.


B.

Key indicator search.


C.

Threat download dashboard.


D.

Protocol intelligence dashboard.


Get Premium SPLK-3001 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.