N10-009 · Question #485
Which of the following should a junior security administrator recommend implementing to mitigate malicious network activity?
The correct answer is A. IPS. An IPS (Intrusion Prevention System) is designed to actively monitor, detect, and block malicious network activity in real time, making it an effective tool for mitigation. Honeypot is used to attract and study attackers, not to prevent them. SIEM (Security Information and…
Question
Which of the following should a junior security administrator recommend implementing to mitigate malicious network activity?
Options
- AIPS
- BHoneypot
- CSIEM
- DVPN
How the community answered
(50 responses)- A90% (45)
- B6% (3)
- C2% (1)
- D2% (1)
Explanation
An IPS (Intrusion Prevention System) is designed to actively monitor, detect, and block malicious network activity in real time, making it an effective tool for mitigation. Honeypot is used to attract and study attackers, not to prevent them. SIEM (Security Information and Event Management) aggregates and analyzes logs but does not directly mitigate threats. VPN (Virtual Private Network) secures data in transit but does not detect or prevent malicious The IPS is the best option for mitigating malicious network activity.
Community Discussion
No community discussion yet for this question.