200-201 • Practice Test 32
Free 200-201 practice test — 15 questions with explanations. Set 32. No signup required.
A Security Operations Center (SOC) uses Security Information and Event Management (SIEM) with event correlation. Analysts notice that alerts for a specific malware signature have decreased sharply after a new firewall rule was deployed. However, endpoint scans still show infections on several hosts. What is the most likely explanation for the decrease in SIEM alerts?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.