PCCSA · Question #29
On an endpoint, which method should you use to secure applications against exploits?
The correct answer is D. endpoint-based firewall. An endpoint-based firewall (D) directly controls inbound and outbound traffic at the device level, filtering malicious requests before they can reach applications - making it the primary tool for blocking exploit attempts targeting software running on that endpoint. Full-disk…
Question
Options
- Afull-disk encryption
- Bstrong user passwords
- Csoftware patches
- Dendpoint-based firewall
How the community answered
(34 responses)- A3% (1)
- B6% (2)
- C9% (3)
- D82% (28)
Explanation
An endpoint-based firewall (D) directly controls inbound and outbound traffic at the device level, filtering malicious requests before they can reach applications - making it the primary tool for blocking exploit attempts targeting software running on that endpoint. Full-disk encryption (A) protects data at rest if a device is physically compromised, but does nothing to stop active exploits against running applications. Strong passwords (B) address authentication weaknesses, not application-layer vulnerabilities. Software patches (C) are important for closing known vulnerabilities, but patching is a remediation strategy, not a real-time protective control - the firewall acts as the active barrier.
Memory tip: Think "firewall = gatekeeper." It stands at the door of the endpoint and decides what traffic is allowed in or out, directly shielding applications from exploit attempts in real time.
Topics
Community Discussion
No community discussion yet for this question.