Splunk Certified Cybersecurity Defense Analyst SPLK-5001 Question # 15 Topic 2 Discussion

Splunk Certified Cybersecurity Defense Analyst SPLK-5001 Question # 15 Topic 2 Discussion

SPLK-5001 Exam Topic 2 Question 15 Discussion:
Question #: 15
Topic #: 2

Splunk Enterprise Security has numerous frameworks to create correlations, integrate threat intelligence, and provide a workflow for investigations. Which framework raises the threat profile of individuals or assets to allow identification of people or devices that perform an unusual amount of suspicious activities?


A.

Threat Intelligence Framework


B.

Risk Framework


C.

Notable Event Framework


D.

Asset and Identity Framework


Get Premium SPLK-5001 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.