exam questions

Exam 300-725 All Questions

View all questions & answers for the 300-725 exam

Exam 300-725 topic 1 question 11 discussion

Actual exam question from Cisco's 300-725
Question #: 11
Topic #: 1
[All 300-725 Questions]

Which method is used by AMP against zero-day and targeted file-based attacks?

  • A. analyzing behavior of all files that are not yet known to the reputation service
  • B. periodically evaluating emerging threats as new information becomes available
  • C. implementing security group tags
  • D. obtaining the reputation of known files
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️
Reference:
https://www.cisco.com/c/en/us/solutions/collateral/enterprise-networks/advanced-malware-protection/solution-overview-c22-734228.html

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
wfexco
4 days, 12 hours ago
D is the Answer - The reason A is not the answer is that it says " of ALL files" Advanced Malware Protection protects against zero-day and targeted file-based threatsby: Obtaining the reputation of known files. Analyzing behavior of certain files that are not yet known to the reputation service. Continuously evaluating emerging threats as new information becomes available, and notifying you about files that are determined to be threats after they have entered your network.
upvoted 2 times
...
Spardaefit
1 week, 4 days ago
D is correct, Advanced Malware Protection protects against zero-day and targeted file-based threats in email attachments by: Obtaining the reputation of known files. Analyzing behavior of certain files that are not yet known to the reputation service. Continuously evaluating emerging threats as new information becomes available, and notifying you about files that are determined to be threats after they have entered your network. https://www.cisco.com/c/en/us/td/docs/security/esa/esa13-5/user_guide/b_ESA_Admin_Guide_13-5/b_ESA_Admin_Guide_12_1_chapter_010001.html
upvoted 3 times
...
vyskopepek
1 month ago
it is IMHO A - as obtaining reputation of the known files will not help you with zero day attacks
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago