A McAfee Event Receiver (ERC) will allow for how many Correlation Data Sources to be configured?
Be default, events in McAfee SIEM are aggregated on which of the following three fields?
Which of the following is the Primary function of the Event Receiver (ERC) in relation to the Enterprise Security Manager (ESM)?
Internet perimeter firewall data-sources provide excellent visibility into
Checkpoint firewalls provide logs to the McAfee SIEM Receiver in which of the following formats?
When writing custom correlation rules, the analyst should focus on