Understanding Cisco Cybersecurity Operations Fundamentals (CBROPS) — Question 132
An engineer needs to fetch logs from a proxy server and generate actual events according to the data received. Which technology should the engineer use to accomplish this task?
Answer options
- A. Firepower
- B. Email Security Appliance
- C. Web Security Appliance
- D. Stealthwatch
Correct answer: D
Explanation
Stealthwatch is designed for monitoring and analyzing network traffic, making it suitable for fetching logs from proxy servers and generating events based on that data. Firepower, Email Security Appliance, and Web Security Appliance are tailored for specific security functions, such as firewalling, email protection, and web filtering, respectively, and do not focus on log analytics in the same way as Stealthwatch.