組織は、個々の AV からのイベントを関連付けることが困難です。EDR。DLP。SWG。WAF、MDM。HIPS、CASB システム。状況を改善する最善の方法は次のうちどれですか?
正解:C
Explanation
A SIEM (Security Information and Event Management) is a system that collects, analyzes, and correlates data from multiple sources, such as AV (antivirus), EDR (endpoint detection and response), DLP (data loss prevention), SWG (secure web gateway), WAF (web application firewall), MDM (mobile device management), HIPS (host intrusion prevention system), and CASB (cloud access security broker). A SIEM can help improve the situation by providing a centralized view of the security posture, alerts, and incidents across the organization.