asked 39.3k views
2 votes
After a security incident is verified in a SOC, and incident responder reviews the incident but cannot identify the source of the incident and form an effective mitigation procedure. To whom should the incident ticket be escalated.

asked
User NodeDad
by
8.6k points

1 Answer

4 votes

Answer:

The possible answers are:

A. A cyber operations analyst for help

B. An SME for further investigation

C. An alert analyst for further analysis

D. The SOC manager to ask for other personnel to be assigned

The correct answer is:

B. An SME for further investigation

Step-by-step explanation:

A scalable next generation Security Operations Center are nowadays developed in order to control and fulfill the needs of the medium and small size companies that have to be connected all times. This type of model allows companies to work in a dynamic way trying not to affect the normal functioning, while detecting the possible threatens.

answered
User Vielinko
by
8.4k points
Welcome to Qamnty — a place to ask, share, and grow together. Join our community and get real answers from real people.