CrowdStrike
CCCS-203B · Question #99
CCCS-203B Question #99: Real Exam Question with Answer & Explanation
Sign in or unlock CCCS-203B to reveal the answer and full explanation for question #99. The question stem and answer options stay visible for context.
Question
An organization wants to create a custom Indicator of Misbehavior (IOM) rule in Falcon Cloud Security to detect and alert when a container attempts to write to a restricted file system directory, such as /etc/passwd. What is the correct step to achieve this?
Options
- AUse AWS IAM policies to block write attempts to the /etc/passwd file.
- BCreate the custom IOM rule in the Falcon Cloud Security Console under the "IOM Rules" section.
- CDefine the rule in the Kubernetes Admission Controller manifest.
- DModify the default Falcon Container Sensor YAML file.
Unlock CCCS-203B to see the answer
You've previewed enough free CCCS-203B questions. Unlock CCCS-203B for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.