CompTIA Network+ (N10-009) — Question 425
A network administrator needs to monitor data from recently installed firewalls in multiple locations. Which of the following solutions would best meet the administrator's needs?
Answer options
- A. IDS
- B. IPS
- C. SIEM
- D. SNMPv2
Correct answer: C
Explanation
The correct answer is C, SIEM, because it centralizes and analyzes security data from multiple sources, including firewalls, allowing for comprehensive monitoring. IDS and IPS focus on detecting and preventing intrusions, respectively, but do not provide the extensive data aggregation that SIEM offers. SNMPv2 is primarily used for network device management and monitoring, not specifically for security data analysis.