CompTIA CySA+ (CS0-002) — Question 122

A security team is struggling with alert fatigue, and the Chief Information Security Officer has decided to purchase a SOAR platform to alleviate this issue. Which of the following BEST describes how a SOAR platform will help the security team?

Answer options

Correct answer: D

Explanation

The correct answer is D because a SOAR platform allows for the automation of responses to specific security events, enabling proactive measures such as blocking unwanted traffic. Options A, B, and C describe various integrations and enhancements that SOAR provides, but they do not specifically address the automation of blocking traffic, which is crucial in reducing alert fatigue.