CCFA-200B · Question #162
What critical prevention policy setting prevents sensor-related files, folders, and registry objects from being renamed or deleted?
The correct answer is C. Sensor Tampering Protection. Sensor Tampering Protection (C) is the correct setting because it is specifically designed to guard the security sensor's own files, folders, and registry objects against unauthorized modification, deletion, or renaming - essentially making the sensor self-defending against…
Question
What critical prevention policy setting prevents sensor-related files, folders, and registry objects from being renamed or deleted?
Options
- ASensor Modification Protection
- BSystem Configuration Protection
- CSensor Tampering Protection
- DHost Modification Protection
How the community answered
(38 responses)- A5% (2)
- C92% (35)
- D3% (1)
Explanation
Sensor Tampering Protection (C) is the correct setting because it is specifically designed to guard the security sensor's own files, folders, and registry objects against unauthorized modification, deletion, or renaming - essentially making the sensor self-defending against adversaries trying to blind it.
- A (Sensor Modification Protection) is a fabricated name; no standard prevention policy uses this label, making it a classic distractor that sounds plausible.
- B (System Configuration Protection) is too broad - it implies protecting general OS configuration, not the sensor's specific components.
- D (Host Modification Protection) refers to preventing unauthorized changes on the host at large, not to shielding the sensor itself from targeted removal.
Memory tip: Think of the word tampering - bad actors tamper with sensors to disable them. "Sensor Tampering Protection" directly names the threat it stops (tampering with the sensor), making it the self-describing answer.
Topics
Community Discussion
No community discussion yet for this question.