nerdexam
Cisco

300-710 · Question #333

A security engineer manages a firewall console and an endpoint console and finds it challenging and time consuming to review events and modify blocking of specific files in both consoles. Which…

The correct answer is D. Initiate the integration between Secure FMC and Cisco Secure Endpoint from the Secure FMC. To streamline the process of reviewing events and modifying blocking of specific files across both the firewall console and the endpoint console, the security engineer should initiate the integration between Secure FMC and Cisco Secure Endpoint (formerly AMP for Endpoints) from…

Integration

Question

A security engineer manages a firewall console and an endpoint console and finds it challenging and time consuming to review events and modify blocking of specific files in both consoles. Which action must the engineer take to streamline this process?

Options

  • AWithin the Cisco Secure Endpoint console, copy the connector GUID and paste into the Cisco
  • BFrom the Cisco Secure Endpoint console, create and copy an API key and paste into the Cisco
  • CFrom the Secure FMC, create a Cisco Secure Endpoint object and reference the object in the
  • DInitiate the integration between Secure FMC and Cisco Secure Endpoint from the Secure FMC

How the community answered

(61 responses)
  • A
    10% (6)
  • B
    7% (4)
  • C
    3% (2)
  • D
    80% (49)

Explanation

To streamline the process of reviewing events and modifying blocking of specific files across both the firewall console and the endpoint console, the security engineer should initiate the integration between Secure FMC and Cisco Secure Endpoint (formerly AMP for Endpoints) from the Secure FMC using the AMP tab. In the FMC, navigate to Devices > Device Management. Select the device and go to the AMP tab. Initiate the integration by configuring the necessary API credentials and linking the FMC to the Cisco Secure Endpoint console. This integration allows the security engineer to view endpoint events and apply blocking actions directly from the FMC, consolidating the management tasks. This approach simplifies the workflow by providing a single interface to manage both network and endpoint security, reducing the time and effort required to maintain security across the organization.

Topics

#Cisco Secure FMC#Cisco Secure Endpoint#Integration#Centralized Management

Community Discussion

No community discussion yet for this question.

Full 300-710 Practice