300-710 · Question #186
Upon detecting a flagrant threat on an endpoint, which two technologies instruct Cisco Identity Services Engine to contain the infected endpoint either manually or automatically? (Choose two.)
The correct answer is C. Cisco AMP D. Cisco Stealthwatch. Cisco AMP provides endpoint threat detection and can send threat intelligence to Cisco ISE to trigger containment actions such as quarantine or restricted access based on detected malware Cisco Stealthwatch offers network traffic analysis and behavioral detection of threats…
Question
Upon detecting a flagrant threat on an endpoint, which two technologies instruct Cisco Identity Services Engine to contain the infected endpoint either manually or automatically? (Choose two.)
Options
- ACisco ASA 5500 Series
- BCisco FMC
- CCisco AMP
- DCisco Stealthwatch
- ECisco ASR 7200 Series
How the community answered
(37 responses)- A11% (4)
- B5% (2)
- C81% (30)
- E3% (1)
Explanation
Cisco AMP provides endpoint threat detection and can send threat intelligence to Cisco ISE to trigger containment actions such as quarantine or restricted access based on detected malware Cisco Stealthwatch offers network traffic analysis and behavioral detection of threats, which can also integrate with ISE to initiate containment by identifying suspicious or malicious endpoint https://community.cisco.com/t5/network-access-control/cisco-ise-amp-for-endpoints- integration/td-p/4273949
Topics
Community Discussion
No community discussion yet for this question.