What type of data do automated detection tools typically analyze?
What is the primary function of a Network Intrusion Detection System (NIDS)?
How does a Network Intrusion Prevention System (NIPS) differ from a NIDS?
What does a Security Incident and Event Management (SIEM) system do?
A company uses a tool that monitors network traffic and alerts administrators when suspicious activity is detected. However, it does not take any action to stop the activity. What type of tool is this?
A network tool detects malicious traffic and automatically blocks the IP address responsible. What type of tool is this?
A security analyst receives an alert from a system that has collected data from firewalls, NIDS/NIPS, and application logs. What system generated the alert?
A company wants to detect patterns that may indicate a cyberattack by analyzing data from multiple sources. Which tool should they use?