4258
Ability
Ability to evaluate steps taken after host-based IDS/IPS alerts, verify the finding and ensure its volatility
Core KSAT for the following Work Roles
No Work Roles with Core KSAT 4258 |
Additional KSAT for the following Work Roles
A Host Analyst (HA) will have knowledge of various system configurations encountered. This work role also performs analysis using built-in tools and capabilities. A Host Analyst will have knowledge of system services and the security and configuration of them, as well as knowledge of file systems, permissions, and operation system configurations. The Host Analyst conducts analysis using built-in tools and capabilities.