CDPSE · Question #370
Which of the following is the BEST source for forensic and analytic information when an organization is investigating suspicious activities from corporate-owned laptops?
The correct answer is A. Endpoint detection and response (EDR). Endpoint detection and response (EDR) is the best source because it provides detailed forensic and analytic data from laptops, including activity logs, behavioral analysis, and incident traces, enabling effective investigation of suspicious activities.
Question
Which of the following is the BEST source for forensic and analytic information when an organization is investigating suspicious activities from corporate-owned laptops?
Options
- AEndpoint detection and response (EDR)
- BWeb application firewall (WAF)
- CMobile device management (MDM)
- DDevice inventory and classification
How the community answered
(59 responses)- A83% (49)
- B3% (2)
- C8% (5)
- D5% (3)
Explanation
Endpoint detection and response (EDR) is the best source because it provides detailed forensic and analytic data from laptops, including activity logs, behavioral analysis, and incident traces, enabling effective investigation of suspicious activities.
Topics
Community Discussion
No community discussion yet for this question.