700-551 · Question #21
Which are three attack vectors of the threat-centric defense? (Choose three.)
The correct answer is B. Cloud apps C. E-mail E. Mobile. In the threat-centric defense model (as defined in Cisco's security framework), Cloud apps (B), E-mail (C), and Mobile (E) represent the three primary attack vectors because they are the dominant channels through which modern threats enter organizations - cloud/web apps expose…
Question
Which are three attack vectors of the threat-centric defense? (Choose three.)
Options
- ASaaS apps
- BCloud apps
- CE-mail
- DVoicemail
- EMobile
How the community answered
(38 responses)- A8% (3)
- B87% (33)
- D5% (2)
Explanation
In the threat-centric defense model (as defined in Cisco's security framework), Cloud apps (B), E-mail (C), and Mobile (E) represent the three primary attack vectors because they are the dominant channels through which modern threats enter organizations - cloud/web apps expose users to drive-by downloads and malicious content, email remains the leading delivery mechanism for phishing and malware, and mobile devices introduce unmanaged endpoints that bypass traditional perimeter controls.
Why the distractors are wrong:
- A (SaaS apps) is a subset of cloud apps - the framework uses the broader "Cloud apps" category (B) to encompass all web-based services, making A redundant and incorrect as a separate vector in this model.
- D (Voicemail) is not recognized as one of the three defined attack vectors in this framework; while voice phishing (vishing) is a real threat, voicemail is not part of this specific threat-centric categorization.
Memory tip: Think "C-E-M" - Cloud, Email, Mobile. These are the three channels that follow users everywhere in a modern, perimeter-less environment - the cloud they access, the inbox they check, and the phone in their pocket.
Topics
Community Discussion
No community discussion yet for this question.