View all detail and faqs for the PCCP exam
Which type of system collects data and uses correlation rules to trigger alarms?
SIM
SIEM
UEBA
SOAR
A Security Information and Event Management (SIEM) system collects data from various sources (logs, events, etc.) and uses correlation rules to analyze this data and trigger alarms when suspicious or predefined patterns are detected.