Quiz: Security information management systems

Quiz: Security information management systems

SearchSecurity.com Security School
This quiz is part of Security information management systems, a lesson in SearchSecurity.com's Intrusion Defense School. Visit the Security information management systems lesson page for additional learning resources.

1. Netflow analysis displaced which monitoring technology?

  1. SMTP
  2. MSP-ISP
  3. AUDITD
  4. SNMP

2. Which of the following is not an advantage of the threat visualization component of security information management systems?

  1. Drillable
  2. Tells you how many attacks are coming
  3. Views threat activity across both the extended enterprise and physical network
  4. Views the course of an attack in real time

3. Which of the following is not a benefit to using a security information management system?

  1. Complex to install and manage
  2. Correlation and analysis of data
  3. Drillable reports and visualization of conditions
  4. Identity transaction processing (some)
  5. Auditing capabilities

4. Compliance mapping is a powerful motivator for SIM deployments today. Which of the following is not a way in which security information management systems help meet compliance requirements?

  1. Provides strong internal controls built into product offerings
  2. Substantiates security controls
  3. Provides a repeatable process
  4. Offers an enterprise-wide view

5. Fill in the blank: Data becomes valuable information when it can be easily understood and acted upon. This is known as ___________.

  1. Insider knowledge
  2. Security process planning
  3. Actionable intelligence
  4. More work
  5. All of the above.

If you answered two or more questions incorrectly, revisit the materials from the lesson Security information management systems:

  • Webcast: SIMs tools and tactics for business intelligence
  • Tip: Combining NetFlow analysis with security information management systems
  • Podcast: Fact or Fiction: The future of SIMs

    If you answered four or more questions correctly, return to SearchSecurity.com's Intrusion Defense School and begin another lesson, or try another school in SearchSecurity.com's Security School Course Catalog.

    This was first published in March 2007