Which type of analytics will trigger the alert on the image shown?
A.
Contextual
B.
Baseline
C.
Behavioral
D.
Anomaly
The Answer Is:
D
This question includes an explanation.
Explanation:
Comprehensive and Detailed Explanation From Exact Extract:
The correct answer isD – Anomaly.
In Cortex XSIAM,Anomaly analyticsare designed to trigger alerts when a monitored activity deviates significantly from the established baseline or historical average. In the image, the "Failed login by non-existent users on host" metric remains at zero for several days and then suddenly spikes to 267 and 381—far above the average threshold. This significant deviation from the established norm is identified by the analytics engine as ananomalyand will trigger an alert for further investigation.
“Anomaly analytics identify significant deviations from established baselines or averages, such as unusual spikes in failed login attempts or other behavioral outliers, and trigger alerts for potential threats.”