nerdexam
Cisco

300-710 · Question #391

Refer to the exhibit. An engineer analyzes a Network Risk Report from Cisco Secure Firewall Management Center. What should the engineer recommend implementing to mitigate the risk?

The correct answer is D. IP address and URL blacklisting. The report indicates that hosts in the network are connecting to known Command and Control (C&C) servers, which are commonly used by attackers to exfiltrate data or execute malicious commands on compromised systems. Implementing IP address and URL blacklisting is an effective mit

Configuration

Question

Refer to the exhibit. An engineer analyzes a Network Risk Report from Cisco Secure Firewall Management Center. What should the engineer recommend implementing to mitigate the risk?

Exhibit

300-710 question #391 exhibit

Options

  • Atrend analysis
  • Bnetwork-based detection
  • Cvirtual protection
  • DIP address and URL blacklisting

How the community answered

(39 responses)
  • A
    15% (6)
  • B
    5% (2)
  • C
    5% (2)
  • D
    74% (29)

Explanation

The report indicates that hosts in the network are connecting to known Command and Control (C&C) servers, which are commonly used by attackers to exfiltrate data or execute malicious commands on compromised systems. Implementing IP address and URL blacklisting is an effective mitigation strategy in this scenario, as it directly blocks communications with known malicious IPs and URLs, thereby preventing further exploitation and reducing the risk.

Topics

#Risk Mitigation#Threat Intelligence#Firewall Access Control#Cisco FMC

Community Discussion

No community discussion yet for this question.

Full 300-710 Practice