nerdexam
Isaca

CDPSE · Question #370

Which of the following is the BEST source for forensic and analytic information when an organization is investigating suspicious activities from corporate-owned laptops?

The correct answer is A. Endpoint detection and response (EDR). Endpoint detection and response (EDR) is the best source because it provides detailed forensic and analytic data from laptops, including activity logs, behavioral analysis, and incident traces, enabling effective investigation of suspicious activities.

Privacy Architecture

Question

Which of the following is the BEST source for forensic and analytic information when an organization is investigating suspicious activities from corporate-owned laptops?

Options

  • AEndpoint detection and response (EDR)
  • BWeb application firewall (WAF)
  • CMobile device management (MDM)
  • DDevice inventory and classification

How the community answered

(59 responses)
  • A
    83% (49)
  • B
    3% (2)
  • C
    8% (5)
  • D
    5% (3)

Explanation

Endpoint detection and response (EDR) is the best source because it provides detailed forensic and analytic data from laptops, including activity logs, behavioral analysis, and incident traces, enabling effective investigation of suspicious activities.

Topics

#Incident Response#Endpoint Security#Forensic Analysis#Security Technologies

Community Discussion

No community discussion yet for this question.

Full CDPSE Practice