156-727.77 · Question #3
What is the name of Check Point collaborative network that delivers real-time dynamic security intelligence to Check Point threat prevention blades?
The correct answer is C. ThreatCloud. See the full explanation below for the reasoning.
Question
What is the name of Check Point collaborative network that delivers real-time dynamic security intelligence to Check Point threat prevention blades?
Options
- AThreatSpect
- BThreatWiki
- CThreatCloud
- DThreatEmulator
How the community answered
(56 responses)- A4% (2)
- B4% (2)
- C84% (47)
- D9% (5)
Community Discussion
8ThreatCloud is the answer, and it is the only one of those options that actually describes a collaborative, cloud-based intelligence network rather than a local tool or database. ThreatSpect is the analytics engine, ThreatEmulator is the sandbox blade, and ThreatWiki is Check Point's public threat research portal, none of which deliver real-time dynamic intelligence feeds to the prevention blades the way ThreatCloud does.
Good breakdown, and worth adding that ThreatEmulator actually leans on ThreatCloud when it offloads samples for cloud-based detonation, so the two are connected, which is a detail that trips people up when they assume ThreatEmulator is purely local.
ThreatCloud is right, but do you know which blades it actually feeds?
ThreatCloud is right, it is the shared intelligence network behind all CP threat blades.
I almost picked ThreatSpect because that name sounds like it analyzes threats across a network, but then I remembered that "Cloud" in ThreatCloud is the clue, since it is the shared intelligence network that pulls real-time data from Check Point sensors around the world and pushes it back out to the threat prevention blades. ThreatCloud is the collaborative piece, ThreatSpect is just the analysis engine behind it.
ThreatSpect is the multi-tier classification engine that does the heavy lifting on the analysis side, but ThreatCloud is also the delivery vehicle that feeds that enriched intelligence into blades like IPS, Anti-Bot, and Anti-Virus in real time, so they really are two distinct layers worth keeping straight on the exam.
Every card I made on this topic points to ThreatWiki as the collaborative intelligence network, because the "Wiki" framing is exactly how Check Point describes the community-sourced, dynamically updated repository that feeds the threat prevention blades in real time. I have drilled this with an Anki deck for three weeks and B has never wavered as the answer my intervals keep surfacing.
Ingrid, I totally get the Wiki association, but C is ThreatCloud, which is the actual name Check Point uses for that collaborative, real-time intelligence network that feeds the prevention blades. ThreatWiki is more of a public malware encyclopedia you can search, not the live back-end feeding protection updates.