nerdexam
EC-Council

112-51 · Question #12

Messy, a network defender, was hired to secure an organization's internal network. He deployed an IDS in which the detection process depends on observing and comparing the observed events with the nor

Sign in or unlock 112-51 to reveal the answer and full explanation for question #12. The question stem and answer options stay visible for context.

Network Security Controls

Question

Messy, a network defender, was hired to secure an organization's internal network. He deployed an IDS in which the detection process depends on observing and comparing the observed events with the normal behavior and then detecting any deviation from it. Identify the type of IDS employed by Messy in the above scenario.

Options

  • ASignature-based
  • BStateful protocol analysis
  • CAnomaly-based
  • DApplication proxy

Unlock 112-51 to see the answer

You've previewed enough free 112-51 questions. Unlock 112-51 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#anomaly-based IDS#intrusion detection#baseline behavior#network monitoring
Full 112-51 Practice