Which of the following SIEM use cases best demonstrates User and Entity Behavior Analytics (UEBA)?
-
A
Alerting when firewall rules are modified
-
B
Detecting a user accessing data volumes 10x above their normal pattern
-
C
Blocking inbound traffic from known malicious IPs
-
D
Correlating IDS signatures with CVE identifiers