nerdexam
CiscoCisco

200-201 · Question #432

200-201 Question #432: Real Exam Question with Answer & Explanation

The correct answer is B: True positive is when antivirus detects a hostile VBA script execution attempt, blocks the file, and. A true positive occurs when a security system correctly identifies and alerts about a malicious activity or threat, such as detecting and blocking a hostile script. A false negative occurs when the security system fails to detect a malicious activity or threat, allowing it to pro

Submitted by eva_at· Mar 6, 2026Security Monitoring

Question

What is the difference between true positive and false negative?

Options

  • ATrue positive is when IPS detects an intrusion sign from an internal IP address and blocks the
  • BTrue positive is when antivirus detects a hostile VBA script execution attempt, blocks the file, and
  • CFalse negative is when antivirus alerts and stops a malicious file from execution, and true positive
  • DFalse negative is when IDS does not detect any intrusion attempts and no attempt took place,

Explanation

A true positive occurs when a security system correctly identifies and alerts about a malicious activity or threat, such as detecting and blocking a hostile script. A false negative occurs when the security system fails to detect a malicious activity or threat, allowing it to proceed without raising

Topics

#true positive#false negative#alert classification

Community Discussion

No community discussion yet for this question.

Full 200-201 PracticeBrowse All 200-201 Questions