200-201

Full exam simulation

2:00:00
1

Security Monitoring

medium

A security analyst is investigating an alert from a host-based intrusion detection system (HIDS) that detected a file modification in the system32 directory. Which log source should the analyst check first to understand the process that made the change?

0 of 90 answered