500-651 · Question #42
Which feature of Cisco Cyber Threat Defense uses more than 40 detectors to process every HTTP or HTTPS request the network?
The correct answer is D. anomaly detection. Anomaly detection (D) is correct because Cisco Cyber Threat Defense's anomaly detection engine deploys over 40 specialized detectors that inspect every HTTP and HTTPS transaction passing through the network, flagging deviations from baseline behavior as potential threats. Event…
Question
Which feature of Cisco Cyber Threat Defense uses more than 40 detectors to process every HTTP or HTTPS request the network?
Options
- Aevent classification
- Brelationship modeling
- Ctrust modeling
- Danomaly detection
How the community answered
(30 responses)- A3% (1)
- B7% (2)
- D90% (27)
Explanation
Anomaly detection (D) is correct because Cisco Cyber Threat Defense's anomaly detection engine deploys over 40 specialized detectors that inspect every HTTP and HTTPS transaction passing through the network, flagging deviations from baseline behavior as potential threats.
- Event classification (A) is wrong - it categorizes already-identified security events into threat types; it doesn't actively inspect individual HTTP/HTTPS requests using detectors.
- Relationship modeling (B) is wrong - it maps relationships between entities (users, hosts, applications) to understand communication patterns, not to process individual web requests.
- Trust modeling (C) is wrong - it assigns trust scores to network entities based on observed behavior over time, rather than running detectors against each HTTP/HTTPS request.
Memory tip: Think "40 detectors = Anomalies Detected" - anomaly detection is the active scanning layer that scrutinizes every request, while the other three options are higher-level analytical or scoring functions that operate on aggregated data.
Topics
Community Discussion
No community discussion yet for this question.