Questions
Answer the following questions to test your knowledge of this chapter:
- For effective log management, an organization should establish logging as a normal business practice.
- True
- False
- Which is not one of the functions of a SIEM?
- Log retention
- Automated response
- Alerting
- Log aggregation
- Which of these is not part of the Elastic Stack?
- Kibana
- Elasticsearch
- Log response
- Logstash
- Locard’s exchange principle states that when two objects come into contact with each other, they leave traces.
- True
- False