JNCIS-SEC Exam QuestionsBrowse all questions from this exam

JNCIS-SEC Exam - Question 31


Which two statements are correct about JSA data collection? (Choose two.)

Show Answer
Correct Answer: BD

The Flow Collector can use statistical sampling, which makes it efficient in analyzing large volumes of network flow data. The Event Collector parses logs, meaning it interprets and structures diverse log data into a standardized format for analysis. These activities are critical for scalable network monitoring and identifying security incidents.

Discussion

1 comment
Sign in to comment
66dc178
66dc178Options: BD
Sep 5, 2024

The Flow Collector's use of statistical sampling is due to its efficiency in analyzing large volumes of network flow data without processing every detail, allowing for scalable network monitoring. The Event Collector's role in parsing logs is to interpret and structure diverse log data into a standardized format for analysis, helping in identifying security incidents and operational issues within the network infrastructure.