Which of the following are the three default users defined within the Users and Groups option in the
ESM properties?
D
When displaying baseline averages using the automatic time range option, baseline data is
correlated by using the same time period that is being used for the current query for which of the
following past number of intervals?
C
When the automated system backup is configured to include events, flows and log data, the first
backup will capture all events, flows and logs
D
Event Aggregation is performed on which of the following fields?
C
Alarms using field match as the condition type allow for selected Actions to be taken when the Alarm
condition is met. Which of the following McAfee ePolicy Orchestrator (ePO) Actions can be selected
when creating such Alarm?
D
A SIEM can be effectively used to identify active threats from internal systems by
monitoring/correlating events that occur
D
While investigating beaconing Malware, an analyst can narrow the search quickly by using which of
the following watchlists in the McAfee SIEM?
C
A backup of the ELM management database captures
B
Which of the following is the name of the Dashboard View that shows correlated events for the
selected Data Source?
A
The McAfee SIEM solution satisfies which of the following compliance requirements?
A