December 2017
Intermediate to advanced
410 pages
11h 5m
English
If we look into an overall log management activity, it comprises three phases:
In each of these phases, there is some kind of time involved and thus at the final stage when the SOC gets an alert of some suspicious activity, some time would have already passed before the activity is actually being performed:

There are certain phases involved, which are explained as follows:
Read now
Unlock full access