nerdexam
Palo_Alto_Networks

PCCSA · Question #29

On an endpoint, which method should you use to secure applications against exploits?

The correct answer is D. endpoint-based firewall. An endpoint-based firewall (D) directly controls inbound and outbound traffic at the device level, filtering malicious requests before they can reach applications - making it the primary tool for blocking exploit attempts targeting software running on that endpoint. Full-disk…

Endpoint Security Fundamentals

Question

On an endpoint, which method should you use to secure applications against exploits?

Options

  • Afull-disk encryption
  • Bstrong user passwords
  • Csoftware patches
  • Dendpoint-based firewall

How the community answered

(34 responses)
  • A
    3% (1)
  • B
    6% (2)
  • C
    9% (3)
  • D
    82% (28)

Explanation

An endpoint-based firewall (D) directly controls inbound and outbound traffic at the device level, filtering malicious requests before they can reach applications - making it the primary tool for blocking exploit attempts targeting software running on that endpoint. Full-disk encryption (A) protects data at rest if a device is physically compromised, but does nothing to stop active exploits against running applications. Strong passwords (B) address authentication weaknesses, not application-layer vulnerabilities. Software patches (C) are important for closing known vulnerabilities, but patching is a remediation strategy, not a real-time protective control - the firewall acts as the active barrier.

Memory tip: Think "firewall = gatekeeper." It stands at the door of the endpoint and decides what traffic is allowed in or out, directly shielding applications from exploit attempts in real time.

Topics

#Endpoint Firewall#Exploit Protection#Application Security

Community Discussion

No community discussion yet for this question.

Full PCCSA Practice