Answered step by step
Verified Expert Solution
Link Copied!

Question

1 Approved Answer

Describe the functions and services of a SOC. Throughout this course, you have read in - depth accounts of security breaches that resulted from various

Describe the functions and services of a SOC.
Throughout this course, you have read in-depth accounts of security breaches that resulted from various attack vectors such as spear phishing, supply chain compromise, software vulnerabilities, exposed credentials, and even insider threats. The early detection of a breach can reduce its impact on an organization, thereby minimizing productivity loss, regulatory fines, and reputational damage. Catching an attacker in the early stages of a campaign relies on continuous monitoring of endpoint and network activity and well-tuned detection logic. Security teams must have access to relevant data sources, such as an application, network device, or endpoint logs, for detections to fire.
For this discussion, construct your response using the key talking points below.
Key Talking Points
When considering the techniques attackers use to gain initial access to an environment, which of the following are the most critical data sources for early detection?
Spear phishing
Supply chain compromises
Software vulnerabilities
Exposed credentials
Insider threats
Provide examples of security events that should be collected from each of these data sources.
What would trigger an investigation into a potential security violation?
Resources
Table 16.Comparison of Common Security-Relevant Data Sources; Ten Strategies of a World-Class Security Operations Center Links to an external site.by Carson Zimmerman
Mitre ATT&CK NavigatorLinks to an external site.
Select Create New Layer and Enterprise
Select the relevant techniques to access a detailed description to include data sources.
Click on the ? icon to the right of the ATT&CK Navigator title to view its documentation
Read the statements posted by your peers. Engage with them by responding with thoughtful comments and questions to deepen the discussion.
Submission Instructions
Suggested time: 60 minutes
Word count: 300400 words
This is a required discussion and counts towards course completion.

Step by Step Solution

There are 3 Steps involved in it

Step: 1

blur-text-image

Get Instant Access to Expert-Tailored Solutions

See step-by-step solutions with expert insights and AI powered tools for academic success

Step: 2

blur-text-image

Step: 3

blur-text-image

Ace Your Homework with AI

Get the answers you need in no time with our AI-driven, step-by-step assistance

Get Started

Recommended Textbook for

Oracle 11G SQL

Authors: Joan Casteel

2nd Edition

1133947360, 978-1133947363

More Books

Students also viewed these Databases questions

Question

=+ a. How does this change affect the incentives for working?

Answered: 1 week ago