ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
Your organization is evaluating a Software-as-a-Service (SaaS) vendor that will handle sensitive customer data. To ensure the provider's security events can be monitored alongside internal systems, which contractual requirement will MOST help the security operations team integrate the vendor's logs into the corporate SIEM?
Logs shall be exported in a recognized, machine-readable format (e.g., CEF or JSON) and transmitted securely to the buyer's SIEM in near real time.
The provider shall email daily PDF security summaries to the buyer's security team.
The provider shall grant read-only access to its web-based monitoring dashboard upon request.
The service shall maintain 99.9 percent availability with a four-hour mean time to repair.
For a SIEM to efficiently collect, parse, and correlate events from an external service, the supplier must stream its logs in near real time using a widely supported, structured format (such as CEF, LEEF, or JSON over syslog or REST). Standardized, machine-readable formatting coupled with secure transmission lets the SOC ingest the data automatically and apply existing correlation rules. Requiring only periodic reports, screenshots, or a web console does not give the SIEM timely, parseable data, and generic uptime or MTTR clauses are unrelated to log integration.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a SIEM and how does it function?
Open an interactive chat with Bash
What are CEF, LEEF, and JSON formats used for in security logging?
Open an interactive chat with Bash
Why is near real-time log integration important for a corporate SIEM?
Open an interactive chat with Bash
What is a SIEM and why is it important in security operations?
Open an interactive chat with Bash
What is CEF and JSON, and why are they referred to as machine-readable formats?
Open an interactive chat with Bash
How does near real-time log transmission improve SOC capabilities?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Supply Chain
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .