nerdexam
EC-Council

212-82 · Question #2

Rhett, a security professional at an organization, was instructed to deploy an IDS solution on their corporate network to defend against evolving threats. For this purpose, Rhett selected an IDS solut

The correct answer is C. Anomaly detection. Anomaly detection is a type of IDS detection method that involves first creating models for possible intrusions and then comparing these models with incoming events to make a detection decision. It can detect unknown or zero-day attacks by looking for deviations from normal or ex

Submitted by kwame.gh· Mar 6, 2026Security Fundamentals

Question

Rhett, a security professional at an organization, was instructed to deploy an IDS solution on their corporate network to defend against evolving threats. For this purpose, Rhett selected an IDS solution that first creates models for possible intrusions and then compares these models with incoming events to make detection decisions. Identify the detection method employed by the IDS solution in the above scenario.

Options

  • ANot-use detection
  • BProtocol anomaly detection
  • CAnomaly detection
  • DSignature recognition

How the community answered

(39 responses)
  • A
    8% (3)
  • B
    3% (1)
  • C
    87% (34)
  • D
    3% (1)

Explanation

Anomaly detection is a type of IDS detection method that involves first creating models for possible intrusions and then comparing these models with incoming events to make a detection decision. It can detect unknown or zero-day attacks by looking for deviations from normal or expected behavior.

Topics

#IDS#intrusion detection#anomaly detection#threat detection

Community Discussion

No community discussion yet for this question.

Full 212-82 Practice