700-760 · Question #29
Which three products are Cisco Visibility & Enforcement solutions? (Choose three.)
The correct answer is B. AnyConnect C. TrustSec D. Identity Services Engine (ISE). AnyConnect, TrustSec, and ISE form Cisco's Visibility & Enforcement category because they all center on identity-aware access control - they identify who/what is on the network and enforce policy based on that identity. AnyConnect provides secure remote access with endpoint…
Question
Which three products are Cisco Visibility & Enforcement solutions? (Choose three.)
Options
- AWeb Security
- BAnyConnect
- CTrustSec
- DIdentity Services Engine (ISE)
- ENext-Generation Firewalls (NGFW)
- FNext-Generation Intrusion Prevention System (NGIPS)
- GAdvanced Malware Protection (AMP) for Endpoints
How the community answered
(24 responses)- A8% (2)
- B88% (21)
- G4% (1)
Explanation
AnyConnect, TrustSec, and ISE form Cisco's Visibility & Enforcement category because they all center on identity-aware access control - they identify who/what is on the network and enforce policy based on that identity. AnyConnect provides secure remote access with endpoint compliance visibility, ISE acts as the policy decision point (authenticating users/devices and granting appropriate access), and TrustSec enforces software-defined segmentation using Security Group Tags assigned by ISE. The distractors belong to a different pillar: NGFW (E), NGIPS (F), and AMP for Endpoints (G) fall under Threat Defense - they detect and block attacks rather than enforcing identity-based access - while Web Security (A) belongs to Content Security, filtering web traffic rather than managing network access.
Memory tip: Link B-C-D to "Bring Credentials, Determine access" - AnyConnect brings you in, TrustSec segments you, and ISE determines what you're allowed to do. If a product blocks threats (firewall, IPS, AMP) or filters content (web security), it's NOT in the Visibility & Enforcement bucket.
Topics
Community Discussion
No community discussion yet for this question.