Q. 1
Computer Aptitude Test
Difficulty: medium
(1 Mark)
In enterprise network architecture: In a Security Operations Center (SOC), what is the core function of a SIEM (Security Information and Event Management) platform?
💡
Step-by-Step Explanation & Concept Rationale
SIEM systems ingest telemetry from firewalls, servers, endpoints, and identity systems, applying correlation rules and machine learning to identify security incidents.
Q. 2
Computer Aptitude Test
Difficulty: hard
(1 Mark)
Under financial sector cybersecurity and IT governance frameworks, in a Security Operations Center (SOC), what is the core function of a SIEM (Security Information and Event Management) platform?
💡
Step-by-Step Explanation & Concept Rationale
SIEM systems ingest telemetry from firewalls, servers, endpoints, and identity systems, applying correlation rules and machine learning to identify security incidents.
Q. 3
Computer Aptitude Test
Difficulty: hard
(1 Mark)
A Joint Director (IS&TD) overseeing network infrastructure evaluates: In a Security Operations Center (SOC), what is the core function of a SIEM (Security Information and Event Management) platform?
💡
Step-by-Step Explanation & Concept Rationale
SIEM systems ingest telemetry from firewalls, servers, endpoints, and identity systems, applying correlation rules and machine learning to identify security incidents.
Q. 4
Computer Aptitude Test
Difficulty: medium
(1 Mark)
Regarding Cisco/Juniper enterprise routing and switching standards: In a Security Operations Center (SOC), what is the core function of a SIEM (Security Information and Event Management) platform?
💡
Step-by-Step Explanation & Concept Rationale
SIEM systems ingest telemetry from firewalls, servers, endpoints, and identity systems, applying correlation rules and machine learning to identify security incidents.
Q. 5
Computer Aptitude Test
Difficulty: hard
(1 Mark)
In next-generation firewall and perimeter defense engineering, in a Security Operations Center (SOC), what is the core function of a SIEM (Security Information and Event Management) platform?
💡
Step-by-Step Explanation & Concept Rationale
SIEM systems ingest telemetry from firewalls, servers, endpoints, and identity systems, applying correlation rules and machine learning to identify security incidents.
Q. 6
Computer Aptitude Test
Difficulty: hard
(1 Mark)
Under SOC operations and NIST incident response guidelines: In a Security Operations Center (SOC), what is the core function of a SIEM (Security Information and Event Management) platform?
💡
Step-by-Step Explanation & Concept Rationale
SIEM systems ingest telemetry from firewalls, servers, endpoints, and identity systems, applying correlation rules and machine learning to identify security incidents.
Q. 7
Computer Aptitude Test
Difficulty: medium
(1 Mark)
Which architecture best delivers zero-trust security when considering: in a Security Operations Center (SOC), what is the core function of a SIEM (Security Information and Event Management) platform?
💡
Step-by-Step Explanation & Concept Rationale
SIEM systems ingest telemetry from firewalls, servers, endpoints, and identity systems, applying correlation rules and machine learning to identify security incidents.
Q. 8
Computer Aptitude Test
Difficulty: hard
(1 Mark)
During enterprise disaster recovery and business continuity planning: In a Security Operations Center (SOC), what is the core function of a SIEM (Security Information and Event Management) platform?
💡
Step-by-Step Explanation & Concept Rationale
SIEM systems ingest telemetry from firewalls, servers, endpoints, and identity systems, applying correlation rules and machine learning to identify security incidents.
Q. 9
Computer Aptitude Test
Difficulty: medium
(1 Mark)
In cryptographic infrastructure and public key management: In a Security Operations Center (SOC), what is the core function of a SIEM (Security Information and Event Management) platform?
💡
Step-by-Step Explanation & Concept Rationale
SIEM systems ingest telemetry from firewalls, servers, endpoints, and identity systems, applying correlation rules and machine learning to identify security incidents.
Q. 10
Computer Aptitude Test
Difficulty: hard
(1 Mark)
From an IT operations and ISO/IEC 27001 compliance viewpoint: In a Security Operations Center (SOC), what is the core function of a SIEM (Security Information and Event Management) platform?
💡
Step-by-Step Explanation & Concept Rationale
SIEM systems ingest telemetry from firewalls, servers, endpoints, and identity systems, applying correlation rules and machine learning to identify security incidents.
Q. 11
Computer Aptitude Test
Difficulty: medium
(1 Mark)
In enterprise network architecture: What are the standard 6 phases of the NIST Computer Security Incident Handling Guide (SP 800-61)?
💡
Step-by-Step Explanation & Concept Rationale
NIST SP 800-61 defines a structured incident response lifecycle from proactive readiness and rapid containment to root-cause eradication and lessons learned.
Q. 12
Computer Aptitude Test
Difficulty: hard
(1 Mark)
Under financial sector cybersecurity and IT governance frameworks, what are the standard 6 phases of the NIST Computer Security Incident Handling Guide (SP 800-61)?
💡
Step-by-Step Explanation & Concept Rationale
NIST SP 800-61 defines a structured incident response lifecycle from proactive readiness and rapid containment to root-cause eradication and lessons learned.
Q. 13
Computer Aptitude Test
Difficulty: hard
(1 Mark)
A Joint Director (IS&TD) overseeing network infrastructure evaluates: What are the standard 6 phases of the NIST Computer Security Incident Handling Guide (SP 800-61)?
💡
Step-by-Step Explanation & Concept Rationale
NIST SP 800-61 defines a structured incident response lifecycle from proactive readiness and rapid containment to root-cause eradication and lessons learned.
Q. 14
Computer Aptitude Test
Difficulty: medium
(1 Mark)
Regarding Cisco/Juniper enterprise routing and switching standards: What are the standard 6 phases of the NIST Computer Security Incident Handling Guide (SP 800-61)?
💡
Step-by-Step Explanation & Concept Rationale
NIST SP 800-61 defines a structured incident response lifecycle from proactive readiness and rapid containment to root-cause eradication and lessons learned.
Q. 15
Computer Aptitude Test
Difficulty: hard
(1 Mark)
In next-generation firewall and perimeter defense engineering, what are the standard 6 phases of the NIST Computer Security Incident Handling Guide (SP 800-61)?
💡
Step-by-Step Explanation & Concept Rationale
NIST SP 800-61 defines a structured incident response lifecycle from proactive readiness and rapid containment to root-cause eradication and lessons learned.
Q. 16
Computer Aptitude Test
Difficulty: hard
(1 Mark)
Under SOC operations and NIST incident response guidelines: What are the standard 6 phases of the NIST Computer Security Incident Handling Guide (SP 800-61)?
💡
Step-by-Step Explanation & Concept Rationale
NIST SP 800-61 defines a structured incident response lifecycle from proactive readiness and rapid containment to root-cause eradication and lessons learned.
Q. 17
Computer Aptitude Test
Difficulty: medium
(1 Mark)
Which architecture best delivers zero-trust security when considering: what are the standard 6 phases of the NIST Computer Security Incident Handling Guide (SP 800-61)?
💡
Step-by-Step Explanation & Concept Rationale
NIST SP 800-61 defines a structured incident response lifecycle from proactive readiness and rapid containment to root-cause eradication and lessons learned.
Q. 18
Computer Aptitude Test
Difficulty: hard
(1 Mark)
During enterprise disaster recovery and business continuity planning: What are the standard 6 phases of the NIST Computer Security Incident Handling Guide (SP 800-61)?
💡
Step-by-Step Explanation & Concept Rationale
NIST SP 800-61 defines a structured incident response lifecycle from proactive readiness and rapid containment to root-cause eradication and lessons learned.
Q. 19
Computer Aptitude Test
Difficulty: medium
(1 Mark)
In cryptographic infrastructure and public key management: What are the standard 6 phases of the NIST Computer Security Incident Handling Guide (SP 800-61)?
💡
Step-by-Step Explanation & Concept Rationale
NIST SP 800-61 defines a structured incident response lifecycle from proactive readiness and rapid containment to root-cause eradication and lessons learned.
Q. 20
Computer Aptitude Test
Difficulty: hard
(1 Mark)
From an IT operations and ISO/IEC 27001 compliance viewpoint: What are the standard 6 phases of the NIST Computer Security Incident Handling Guide (SP 800-61)?
💡
Step-by-Step Explanation & Concept Rationale
NIST SP 800-61 defines a structured incident response lifecycle from proactive readiness and rapid containment to root-cause eradication and lessons learned.
Q. 21
Computer Aptitude Test
Difficulty: medium
(1 Mark)
In enterprise network architecture: In threat intelligence analysis, what is an Indicator of Compromise (IoC)?
💡
Step-by-Step Explanation & Concept Rationale
IoCs provide actionable telemetry that SOC analysts and EDR tools use to identify active compromises and hunt advanced persistent threats (APTs).
Q. 22
Computer Aptitude Test
Difficulty: hard
(1 Mark)
Under financial sector cybersecurity and IT governance frameworks, in threat intelligence analysis, what is an Indicator of Compromise (IoC)?
💡
Step-by-Step Explanation & Concept Rationale
IoCs provide actionable telemetry that SOC analysts and EDR tools use to identify active compromises and hunt advanced persistent threats (APTs).
Q. 23
Computer Aptitude Test
Difficulty: hard
(1 Mark)
A Joint Director (IS&TD) overseeing network infrastructure evaluates: In threat intelligence analysis, what is an Indicator of Compromise (IoC)?
💡
Step-by-Step Explanation & Concept Rationale
IoCs provide actionable telemetry that SOC analysts and EDR tools use to identify active compromises and hunt advanced persistent threats (APTs).
Q. 24
Computer Aptitude Test
Difficulty: medium
(1 Mark)
Regarding Cisco/Juniper enterprise routing and switching standards: In threat intelligence analysis, what is an Indicator of Compromise (IoC)?
💡
Step-by-Step Explanation & Concept Rationale
IoCs provide actionable telemetry that SOC analysts and EDR tools use to identify active compromises and hunt advanced persistent threats (APTs).
Q. 25
Computer Aptitude Test
Difficulty: hard
(1 Mark)
In next-generation firewall and perimeter defense engineering, in threat intelligence analysis, what is an Indicator of Compromise (IoC)?
💡
Step-by-Step Explanation & Concept Rationale
IoCs provide actionable telemetry that SOC analysts and EDR tools use to identify active compromises and hunt advanced persistent threats (APTs).
Study Stream Progress:
Showing 25 of 50 Questions (50%)
Jump to:
Ready to Test Your Retention & Speed?
Now that you have reviewed the study questions and rationales, test yourself in our interactive 1-by-1 practice engine or take the full official timed mock exam.