350-701 · Question #682
Which platform uses Cyber Threat Intelligence as its main source of information?
The correct answer is D. Cisco Secure Endpoint. Cisco Secure Endpoint (formerly AMP for Endpoints) leverages a vast amount of Cyber Threat Intelligence from Cisco Talos and other sources as its primary mechanism to detect, prevent, and respond to advanced threats on endpoints.
Question
Which platform uses Cyber Threat Intelligence as its main source of information?
Options
- AEPP
- BEDR
- CCisco ASA
- DCisco Secure Endpoint
How the community answered
(24 responses)- A4% (1)
- C4% (1)
- D92% (22)
Why each option
Cisco Secure Endpoint (formerly AMP for Endpoints) leverages a vast amount of Cyber Threat Intelligence from Cisco Talos and other sources as its primary mechanism to detect, prevent, and respond to advanced threats on endpoints.
EPP (Endpoint Protection Platform) is a category of security solutions, not a specific platform, though solutions in this category utilize threat intelligence.
EDR (Endpoint Detection and Response) is also a category of security solutions, focusing on detecting and investigating suspicious activities, but not a specific platform name.
Cisco ASA is a firewall and VPN appliance primarily focused on network perimeter defense and VPN services; while it consumes some threat intelligence, it is not a platform whose main function is driven by comprehensive Cyber Threat Intelligence in the same way an endpoint security solution is.
Cisco Secure Endpoint (formerly Cisco AMP for Endpoints) is a sophisticated endpoint protection, detection, and response (EPP/EDR) solution that heavily relies on continuous analysis of files and processes, correlated with extensive global threat intelligence (including Cisco Talos) to identify known and unknown malware, and provide retrospective analysis.
Concept tested: Cisco Secure Endpoint and threat intelligence
Source: https://www.cisco.com/c/en/us/products/security/endpoint-security/secure-endpoint-datasheet.html
Topics
Community Discussion
No community discussion yet for this question.