ISC2 Governance, Risk and Compliance (CGRC) Practice Question
While aligning its security operations procedures with the NIST Cybersecurity Framework, a security engineer must categorize the continuous analysis of intrusion detection system alerts to spot anomalous traffic. Under which CSF core function should this activity be documented?
The NIST Cybersecurity Framework groups security activities into five core functions. Continuous monitoring and analysis of IDS alerts is part of the Detect function, whose goal is to identify the occurrence of cybersecurity events in a timely manner. Identify deals with understanding assets, business context, and risk; Protect focuses on safeguards to ensure delivery of services; Respond covers actions taken after a detected event to contain or mitigate it. Therefore, documenting IDS alert analysis belongs under Detect rather than the other functions.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the NIST Cybersecurity Framework?
Open an interactive chat with Bash
What are intrusion detection systems (IDS), and how do they work?
Open an interactive chat with Bash
What are the five core functions of the NIST Cybersecurity Framework?
Open an interactive chat with Bash
ISC2 Governance, Risk and Compliance (CGRC)
Security and Privacy Governance, Risk Management, and Compliance Program
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .