823
Task
Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts.
Core KSAT for the following Work Roles
Uses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs.) to analyze events that occur within their environments for the purposes of mitigating threats.
Investigates, analyzes, and responds to cyber incidents within the network environment or enclave.
Additional KSAT for the following Work Roles
No Work Roles with Additional KSAT 823 |