Effective stakeholder reporting should provide high-level summaries supported by actionable insights . Senior security, business, compliance, and operational stakeholders generally need information that communicates security posture, trends, material risks, control effectiveness, and required decisions without forcing them to interpret individual raw events.
An effective report therefore translates operational SOC data into meaningful measurements such as detection trends, response-time metrics, high-risk entities, recurring incident categories, coverage gaps, or control-performance indicators. Where detailed evidence is required, supporting event-level information can remain available through drilldowns or appendices, but it should not dominate the executive-level presentation.
Option B is unsuitable because exhaustive event logs create excessive detail and obscure the conclusions stakeholders need. Option C incorrectly assumes all stakeholders have the same technical requirements. Option D is also incorrect because compliance-related measurements may be essential to governance, audit, and risk-management audiences.
The supplied Cybersecurity Defense Engineer material directly emphasizes meaningful security metrics and distinguishes useful performance measurements from raw activity counts, such as total firewall blocks.
Study Guide topics: security-program reporting, SOC metrics, KPIs, stakeholder communication, actionable reporting, control effectiveness.