312-50V9 · Question #31
A security consultant decides to use multiple layers of anti-virus defense, such as end user desktop anti- virus and E-mail gateway. This approach can be used to mitigate which kind of attack?
The correct answer is C. Social engineering attack. Layered anti-virus defenses at the desktop and email gateway levels help mitigate social engineering attacks that rely on malicious attachments or links delivered via email or user interaction.
Question
A security consultant decides to use multiple layers of anti-virus defense, such as end user desktop anti- virus and E-mail gateway. This approach can be used to mitigate which kind of attack?
Options
- AForensic attack
- BARP spoofing attack
- CSocial engineering attack
- DScanning attack
How the community answered
(34 responses)- A6% (2)
- B3% (1)
- C79% (27)
- D12% (4)
Why each option
Layered anti-virus defenses at the desktop and email gateway levels help mitigate social engineering attacks that rely on malicious attachments or links delivered via email or user interaction.
Forensic attacks relate to post-incident investigation techniques, not an attack vector that anti-virus layering would mitigate.
ARP spoofing is a network-layer attack targeting address resolution and is countered by dynamic ARP inspection or network controls, not anti-virus software.
Social engineering attacks frequently use phishing emails with malicious attachments or links to trick users into executing malware. Deploying anti-virus at both the email gateway (to block malicious content before it reaches the user) and the endpoint (to catch anything that slips through) creates a defense-in-depth strategy specifically effective against this vector.
Scanning attacks involve network reconnaissance and are mitigated by firewalls and IDS/IPS, not anti-virus solutions.
Concept tested: Defense-in-depth anti-virus strategy against social engineering
Source: https://www.nist.gov/cyberframework
Topics
Community Discussion
No community discussion yet for this question.