ElasticCertified SIEM Analyst
Domain 5Objective 1
Construct Dashboards for Security Use Cases ELASTIC-CERTIFIED-SIEM-ANALYST Practice Questions (Page 2)
Part of the Dashboards domain, which makes up ~11% of our current practice bank.
22questions here
5free pages
8concepts
Questions 6–10
- 6
A security analyst needs to share a dashboard with a stakeholder who does not have access to the Elasticsearch cluster. What is the most appropriate way to share the dashboard?
Select an answer first - 7
A dashboard is being built to show security events by severity and by source IP. What is the most logical way to organize these visualizations?
Select an answer first - 8
A security manager needs a dashboard that shows whether the organization is meeting a regulatory requirement to review all privileged account logins within 24 hours. Which security use case does this dashboard support?
Select an answer first - 9
An analyst is building a dashboard to monitor failed login attempts across the organization. Which Elasticsearch index is most likely to contain the relevant data?
Select an answer first - 10
A security team is building a dashboard to monitor for unauthorized access attempts. They have access to VPN logs, firewall logs, and Windows Event Logs. Which data source is most relevant for detecting unauthorized access attempts?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Elastic. “ELASTIC-CERTIFIED-SIEM-ANALYST” is a trademark of its owner, used for identification only.