Login to manage your account

Please enter a valid email address.
Forgot Password?
Please enter a valid password.
OR

Don't have an account yet? Sign up

Which log source is most valuable to a SIEM?

  1. A Authentication logs from identity providers and domain controllers
  2. B Web server access logs only
  3. C Printer logs
  4. D Application debug logs
Answer

Authentication logs from identity providers and domain controllers

Most attacks involve credentials at some point, so identity telemetry gives the broadest detection coverage per unit of effort.

All Cybersecurity MCQs

Login to manage your account

Please enter a valid email address.
Forgot Password?
Please enter a valid password.
OR

Don't have an account yet? Sign up as