CAS-003 · Question #478
An organization is reviewing endpoint security solutions. In evaluating products, the organization has the following requirements: 1. Support server, laptop, and desktop infrastructure 2. Due to…
The correct answer is C. Endpoint detect and respond D. Rights management. The four requirements map directly to two specific capabilities. Endpoint Detection and Response (EDR) satisfies requirements 1 and 2: it runs on servers, laptops, and desktops, and provides active (automated) protection without requiring constant manual intervention from a…
Question
Options
- AData loss prevention
- BApplication whitelisting
- CEndpoint detect and respond
- DRights management
- ELog monitoring
- FAntivirus
How the community answered
(57 responses)- A5% (3)
- B2% (1)
- C81% (46)
- E11% (6)
- F2% (1)
Explanation
The four requirements map directly to two specific capabilities. Endpoint Detection and Response (EDR) satisfies requirements 1 and 2: it runs on servers, laptops, and desktops, and provides active (automated) protection without requiring constant manual intervention from a small security team. Rights Management (IRM/DRM) satisfies requirements 3 and 4: it empowers users to self-classify and label documents and apply usage policies themselves, and it protects data both at rest (files are encrypted) and in use (policies are enforced even when a file is open or shared). DLP (A) protects data in transit but does not give users a self-service classification workflow. Application whitelisting (B) controls software execution, not data. Log monitoring (E) is passive, not protective. Antivirus (F) is reactive and does not address data classification or protection policies.
Topics
Community Discussion
No community discussion yet for this question.