nerdexam
CiscoCisco

300-720 · Question #185

300-720 Question #185: Real Exam Question with Answer & Explanation

The correct answer is B: File Reputation Filtering. To integrate Cisco Secure Email with Cisco Secure Endpoint and block zero-day threats, the engineer must enable File Reputation Filtering (to check files against Cisco’s threat intelligence) and File Analysis (to send unknown or suspicious files to Threat Grid for sandboxing and

Cisco ESA Spam Control and Anti-Malware

Question

An engineer must integrate Cisco Secure Email with the Cisco Secure Endpoint console. Which two settings must be configured to prevent zero-day threats? (Choose two.)

Options

  • AMessage Filters
  • BFile Reputation Filtering
  • CFile Analysis
  • DUndesirable URL Settings
  • EContent Filter Settings

Explanation

To integrate Cisco Secure Email with Cisco Secure Endpoint and block zero-day threats, the engineer must enable File Reputation Filtering (to check files against Cisco’s threat intelligence) and File Analysis (to send unknown or suspicious files to Threat Grid for sandboxing and behavioral analysis). These two settings work together to detect and block zero-day malware.

Topics

#Zero-day prevention#Advanced Malware Protection#File Analysis#File Reputation

Community Discussion

No community discussion yet for this question.

Full 300-720 PracticeBrowse All 300-720 Questions