Which of the following in the incident response process is the BEST approach to improve the speed of the identification phase?
Correct Answer B. Tune monitoring in order to reduce false positive rates.
Tuning monitoring to reduce false positive rates is the best approach to improve the speed of the identification phase of the incident response process. False positives can overwhelm the response team and slow down the identification of actual incidents. By fine-tuning the monitoring systems (e.g., intrusion detection systems, SIEMs), the organization can improve the accuracy of alerts, allowing security analysts to identify true security incidents more efficiently.
Reasons the other options are incorrect:
No Payment Cards Needed
Discover a range of courses designed to provide you with the knowledge and skills needed to excel in your chosen field.
You don’t need one month to study and pass your test.
With Prepsaret, it takes you a few days to grasp all the concepts needed to pass your exams