nerdexam
Cisco

350-701 · Question #691

What is a feature of an endpoint detection and response solution?

The correct answer is C. rapidly and consistently observing and examining data to mitigate threats. A key feature of an EDR solution is its ability to continuously monitor, capture, and analyze endpoint data to detect and respond to threats rapidly.

Submitted by packet_pusher· Mar 30, 2026Security Monitoring

Question

What is a feature of an endpoint detection and response solution?

Options

  • Aensuring the security of network devices by choosing which devices are allowed to reach the
  • Bcapturing and clarifying data on email, endpoints, and servers to mitigate threats
  • Crapidly and consistently observing and examining data to mitigate threats
  • Dpreventing attacks by identifying harmful events with machine learning and conduct-based

How the community answered

(50 responses)
  • B
    4% (2)
  • C
    94% (47)
  • D
    2% (1)

Why each option

A key feature of an EDR solution is its ability to continuously monitor, capture, and analyze endpoint data to detect and respond to threats rapidly.

Aensuring the security of network devices by choosing which devices are allowed to reach the

This describes Network Access Control (NAC) or network segmentation, which primarily controls device access to the network, rather than endpoint-level threat detection and response.

Bcapturing and clarifying data on email, endpoints, and servers to mitigate threats

While EDR deals with data on endpoints and potentially servers, "capturing and clarifying data on email" is typically handled by Email Security Gateways or Secure Email Gateways, which are separate solutions from core EDR.

Crapidly and consistently observing and examining data to mitigate threatsCorrect

EDR solutions focus on continuous and comprehensive monitoring of endpoint activities, capturing telemetry data, and then performing rapid analysis to detect malicious behavior and facilitate timely incident response.

Dpreventing attacks by identifying harmful events with machine learning and conduct-based

While EDR solutions can use machine learning and behavior analysis for prevention, their core definitional feature is the detection and response aspect through continuous observation and examination of data, not solely prevention, which is more aligned with an Endpoint Protection Platform (EPP).

Concept tested: Endpoint Detection and Response (EDR) features

Source: https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/endpoint-detection-response-capabilities?view=o365-worldwide

Topics

#EDR#Endpoint Security#Threat Detection

Community Discussion

No community discussion yet for this question.

Full 350-701 Practice