Sie sind auf Seite 1von 2

4/22/2020 SOAR Quiz

 The Evolution of Cybersecurity

Started on Wednesday, April 22, 2020, 7:19 PM


State Finished
Completed on Wednesday, April 22, 2020, 7:20 PM
Time taken 1 min 26 secs
Points 4/5
Grade 80 out of 100
Feedback Congratulations, you passed!

Question 1 What does the acronym SOAR stand for?


Correct

1 points out of 1 Select one:


Situation, Opportunity, Action, & Result

Single out, On the board, Asked, & Repeated

Situation, Orientation, Adroit, & Replication

Security, Orchestration, Automation, & Response 

Question 2 Why is SOAR used?


Correct

1 points out of 1 Select one:


To synchronize tools, accelerate response times, reduce alert fatigue, and compensate for the skill shortage gap. 

To analyze workload, organize an analysts tasks, and allow teams to respond using their own processes.

To replace tier 1 analysts and automate all of their tasks.

To collaborate with other analysts during investigations.

Question 3 From the choices below, what is the best description of S.O.A.R?
Correct

1 points out of 1 Select one:


Combines the processes and the security tools available to exploit opportunities given a particular situation.

Connects all tools in your security stack together into defined workflows that can be run automatically. 

Correctly orients the security team to address the cyber threat according to the situation.

Question 4 What are playbooks used for?


Incorrect

0 points out of 1 Select one:


To optimize manual processes.

To automate actions an analyst typically would have to complete manually.

To describe the order analyst’s complete tasks. 

The plan an analyst creates to complete a task manually.

https://training.fortinet.com/mod/quiz/review.php?attempt=3137074&cmid=55419 1/2
4/22/2020 SOAR Quiz

Question 5 What is alert fatigue?


Correct

1 points out of 1 Select one:


When an analyst is overwhelmed from the number of alerts coming in. 

When a SOAR solution is overloaded with alerts.

When a team reduces the number of alerts coming in using SOAR.

When the number of alerts decline.

https://training.fortinet.com/mod/quiz/review.php?attempt=3137074&cmid=55419 2/2

Das könnte Ihnen auch gefallen