🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 12 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

Your organization runs web applications on Amazon EC2 instances that forward operating-system and application logs to a central SIEM. During an incident response exercise, analysts discovered that events from different servers were difficult to correlate because their timestamps differed by several minutes. Which system-level logging configuration change on each instance will most effectively prevent this issue in the future?

  • Encrypt the local /var/log directory with a file-system encryption utility to prevent unauthorized access.

  • Enable log rotation to archive local log files once they reach a predefined size threshold.

  • Configure each instance to use a trusted NTP source and enforce automatic time synchronization at regular intervals.

  • Increase the log level to verbose so that additional context is captured for every event.

ISC2 Systems Security Certified Practitioner (SSCP)
Risk Identification, Monitoring and Analysis
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot