nerdexam
CrowdStrike

CCCS-203B · Question #306

When trying to identify workloads running in your cloud environment without deploying a Falcon sensor, which of the following approaches would best align with CrowdStrike's runtime protection…

The correct answer is C. Configuring agentless scanning with Falcon Discover to identify active workloads. Option A: Packet analysis tools are useful for understanding network behaviors but do not provide insights into specific runtime processes within workloads. They address different aspects of security and visibility. Option B: Falcon Horizon is designed for cloud security…

Cloud Workload Protection

Question

When trying to identify workloads running in your cloud environment without deploying a Falcon sensor, which of the following approaches would best align with CrowdStrike's runtime protection capabilities?

Options

  • AImplementing network packet analysis tools to monitor traffic patterns.
  • BUsing Falcon Horizon to integrate with cloud APIs and fetch runtime data.
  • CConfiguring agentless scanning with Falcon Discover to identify active workloads.
  • DScanning the environment manually through SSH connections and command-line tools.

How the community answered

(29 responses)
  • A
    7% (2)
  • B
    3% (1)
  • C
    79% (23)
  • D
    10% (3)

Explanation

Option A: Packet analysis tools are useful for understanding network behaviors but do not provide insights into specific runtime processes within workloads. They address different aspects of security and visibility. Option B: Falcon Horizon is designed for cloud security posture management (CSPM), focusing on misconfigurations and compliance issues rather than runtime visibility into workloads or Option C: Falcon Discover offers an agentless solution that integrates seamlessly with cloud environments to identify running workloads. This aligns with runtime protection principles and allows security teams to identify active instances, workloads, and other resources without deploying a Falcon sensor. Option D: Manual scanning through SSH is time-consuming, error-prone, and not scalable for large cloud environments. It also lacks the centralized visibility and automation offered by Falcon

Topics

#agentless scanning#Falcon Discover#workload visibility#sensorless detection

Community Discussion

No community discussion yet for this question.

Full CCCS-203B Practice