700-765 · Question #19
Which is a key feature of Cisco Defense Orchestra?
The correct answer is B. Orchestrates security policy management form one place. Cisco Defense Orchestrator's defining feature is centralized orchestration of security policy management across multiple heterogeneous Cisco security devices from a single cloud-based interface.
Question
Which is a key feature of Cisco Defense Orchestra?
Options
- AProfiles devices connected to customer s network
- BOrchestrates security policy management form one place
- CConsolidates configuration management
- DProtects customers network against zero-day attacks
How the community answered
(62 responses)- A6% (4)
- B89% (55)
- C3% (2)
- D2% (1)
Why each option
Cisco Defense Orchestrator's defining feature is centralized orchestration of security policy management across multiple heterogeneous Cisco security devices from a single cloud-based interface.
Profiling devices connected to the network is a function of Cisco Identity Services Engine (ISE), which performs device posture assessment and network access control, not CDO.
CDO's primary value is the ability to orchestrate and enforce consistent security policies across Cisco ASA, Firepower Threat Defense, Meraki MX, and other devices from one cloud-based console. This single-pane-of-glass approach eliminates the need to log into individual devices for policy changes and reduces configuration drift across the environment.
While CDO assists with configuration consistency, consolidating configuration management is a secondary capability - the primary and defining feature is policy orchestration across multiple device types.
Protection against zero-day attacks relies on Cisco Talos threat intelligence and NGIPS or AMP detection engines, not on CDO, which is a management and orchestration platform.
Concept tested: Cisco Defense Orchestrator primary orchestration function
Source: https://www.cisco.com/c/en/us/products/security/defense-orchestrator/index.html
Topics
Community Discussion
No community discussion yet for this question.