Answered step by step
Verified Expert Solution
Question
1 Approved Answer
Describe the functions and services of a SOC. Throughout this course, you have read in - depth accounts of security breaches that resulted from various
Describe the functions and services of a SOC.
Throughout this course, you have read indepth accounts of security breaches that resulted from various attack vectors such as spear phishing, supply chain compromise, software vulnerabilities, exposed credentials, and even insider threats. The early detection of a breach can reduce its impact on an organization, thereby minimizing productivity loss, regulatory fines, and reputational damage. Catching an attacker in the early stages of a campaign relies on continuous monitoring of endpoint and network activity and welltuned detection logic. Security teams must have access to relevant data sources, such as an application, network device, or endpoint logs for detections to fire.
For this discussion, construct your response using the key talking points below.
Key Talking Points
When considering the techniques attackers use to gain initial access to an environment, which of the following are the most critical data sources for early detection?
Spear phishing
Supply chain compromises
Software vulnerabilities
Exposed credentials
Insider threats
Provide examples of security events that should be collected from each of these data sources.
What would trigger an investigation into a potential security violation?
Resources
Table Comparison of Common SecurityRelevant Data Sources; Ten Strategies of a WorldClass Security Operations Center Links to an external site.by Carson Zimmerman
Mitre ATT&CK NavigatorLinks to an external site.
Select Create New Layer and Enterprise
Select the relevant techniques to access a detailed description to include data sources.
Click on the icon to the right of the ATT&CK Navigator title to view its documentation
Read the statements posted by your peers. Engage with them by responding with thoughtful comments and questions to deepen the discussion.
Submission Instructions
Suggested time: minutes
Word count: words
This is a required discussion and counts towards course completion.
Step by Step Solution
There are 3 Steps involved in it
Step: 1
Get Instant Access to Expert-Tailored Solutions
See step-by-step solutions with expert insights and AI powered tools for academic success
Step: 2
Step: 3
Ace Your Homework with AI
Get the answers you need in no time with our AI-driven, step-by-step assistance
Get Started