CISSP-ISSEP · Question #180
Which of the following is a type of security management for computers and networks in order to identify security breaches?
The correct answer is B. IDS. IDS (Intrusion Detection System) is designed specifically to monitor network and system activity and alert administrators when suspicious behavior or policy violations are detected - making identification of security breaches its core purpose. IPS (Intrusion Prevention System)…
Question
Which of the following is a type of security management for computers and networks in order to identify security breaches?
Options
- AIPS
- BIDS
- CASA
- DEAP
How the community answered
(29 responses)- A3% (1)
- B86% (25)
- C3% (1)
- D7% (2)
Explanation
IDS (Intrusion Detection System) is designed specifically to monitor network and system activity and alert administrators when suspicious behavior or policy violations are detected - making identification of security breaches its core purpose.
IPS (Intrusion Prevention System) goes a step further than detection by actively blocking threats in real time, so it prevents rather than just identifies breaches. ASA (Adaptive Security Appliance) is Cisco's combined firewall/VPN device focused on access control and traffic filtering, not breach identification. EAP (Extensible Authentication Protocol) is an authentication framework used in wireless and point-to-point connections - it handles who gets in, not detecting when something goes wrong.
Memory tip: Think "D for Detect" - IDS watches and reports, IPS watches and stops. If the question asks about identification/detection, pick IDS; if it asks about prevention/blocking, pick IPS.
Topics
Community Discussion
No community discussion yet for this question.