Answer All Questions (Detecting Incedent and Management)

User Generated

Jbzv

Computer Science

Description

Provide complete answers for each of the following. You must answer in complete sentences using your own words. Include examples to back up your points.

1. Although any threat category could instigate an incident, NIST provides a five-category incident classification scheme for network-based incidents. Briefly describe the five categories.

2. IPS technologies can respond to a detected threat by attempting to prevent it from succeeding. Briefly describe the three groups of response techniques they use.

3. What does the term “tuning” mean with respect to an IDPS?

4. When selecting an IDPS from a resource standpoint, what two key items do we need to understand

5. Signature matching can be accomplished by the comparison of captured network traffic using a special implementation of the TCP/IP stack that reassembles the packets and applies protocol stack verification. Briefly describe how protocol stack verification works.

User generated content is uploaded by users for the purposes of learning and should be used following Studypool's honor code & terms of service.

Explanation & Answer

Hey I am thro...


Anonymous
Great study resource, helped me a lot.

Studypool
4.7
Trustpilot
4.5
Sitejabber
4.4

Related Tags