What is the major benefit of ArcSight Logger?
A. Correlation of raw events
B. Long-term storage of events
C. Storage of connectors
D. Real-time threat detection
Which Arc Sight solution delivers Arc Sight content to add specific compliance or standard requirements such as PCI and Sarbanes-Oxley (SOX)?
A. Compliance Insight Package
B. Arc Sight Resource Collector
C. Arc Sight Update Package
D. Arc Sight Package Bundle
Which feature of Arc Sight Smart Connectors reduces the quantity of events sent to the ESM Manager?
A. Normalization
B. Host name lookup
C. Categorization
D. Aggregation
What is an example of a CIP package used for compliance?
A. DOD
B. NSA
C. PCI
D. MOD
Which statement describes a CIP?
A. A collection of packages to interface ArcSight products with ticket management systems
B. A suite of ArcSight resources focusing on system performance issues
C. A product that scales easily to manage extreme machine data across IT
D. A collection of ArcSight resources to monitor IT assets, based on regulatory requirements
Which resource used in the Workflow phase in the event lifecycle, .tracks either individual events or multiple related events?
A. Reports
B. Stages
C. Query viewers
D. Cases
What is the most important reason or benefit for customers to use ArcSight ESM?
A. Events correlation
B. Raw data storage
C. Events aggregation
D. Central management of connectors
How does a CIP help an organization? (Select two.)
A. Reduces deployment times of ArcSight components in the organization
B. Contributes to establishing a strong IT governance program and reducing costs
C. Shares, uploads, or downloads connectors within your Arc Sight community
D. Helps to meet regulatory compliance requirements
E. Helps to define high availability scenarios for ArcSight components
What is IAM an acronym for?
A. Intrusion and Access Management
B. Identity and Access Management
C. Incident Account Management
D. Identity Account Management
What does the ArcSight ESM prioritize?
A. Every event
B. Correlated events only
C. Forwarded events only
D. Every event exclusive of audit and monitor events