問題文
A security lead wants to be told automatically when a single account starts renaming an unusual number of files at night. The team looks at what the analytics component offers. Which of the following is correct?
選択肢
- An anomaly rule watches the behavior that departs from the earlier pattern, and the alert it raises names the license and the clusters that were counted
- An anomaly rule watches the behavior that departs from the earlier pattern, and the alert it raises names the account and the folders that were touched
- An anomaly rule watches the quota that departs from the stated ceiling, and the alert it raises names the license and the clusters that were counted
- An anomaly rule watches the quota that departs from the stated ceiling, and the alert it raises names the account and the folders that were touched