An organization needs to monitor its users’ activities in order to prevent insider threats. Which of the following solutions would help the organization achieve this goal?
Choose an answer
Tap an option to check your answer.
Correct answer: Behavioral analytics.
Why this is the answer
Behavioral analytics is the correct solution because it focuses on identifying deviations from normal user behavior, which is crucial for detecting insider threats. By establishing baselines of typical activity, it can flag unusual logins, data access patterns, or file transfers that might indicate malicious intent from within the organization. Access control lists (ACLs) define what resources a user can access, but they don't monitor how those resources are used or detect anomalous behavior. Identity and access management (IAM) systems manage user identities and permissions, but like ACLs, they don't actively analyze ongoing user actions for threats. A network intrusion detection system (NIDS) primarily monitors network traffic for external threats and known attack signatures, rather than focusing on internal user activity for insider threat detection.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed