A network security administrator needs to set up a solution to:
Gather all data from log files in a single location.
Correlate the data to generate alerts.
Which of the following should the administrator implement?
A Security Information and Event Management system centralizes log collection from disparate sources and applies correlation rules to generate actionable alerts.
Eugene
20 hours ago