Palo_Alto_Networks
SECOPS-PRO · Question #69
SECOPS-PRO Question #69: Real Exam Question with Answer & Explanation
Sign in or unlock SECOPS-PRO to reveal the answer and full explanation for question #69. The question stem and answer options stay visible for context.
Question
A Security Operations Center (SOC) analyst is investigating a surge of highly evasive malware samples targeting their organization. The current strategy involves submitting suspicious files to a public sandbox and querying VirusTotal for initial insights. However, the malware consistently bypasses detection, and detailed behavioral analysis is lacking. To significantly enhance their detection capabilities against zero-day threats and obtain deeper, proprietary behavioral intelligence, which of the following actions would be most effective and aligned with Palo Alto Networks best practices?
Options
- AIncrease the frequency of VirusTotal API queries and integrate more community-contributed
- BImplement an on-premise WildFire appliance or subscribe to WildFire cloud for dynamic analysis,
- CRely solely on open-source intelligence feeds and develop custom scripts for static analysis of the
- DPurchase commercial antivirus software with signature-based detection, as it is more effective
- EFocus on network traffic analysis using NetFlow data, as file analysis is often insufficient for
Unlock SECOPS-PRO to see the answer
You've previewed enough free SECOPS-PRO questions. Unlock SECOPS-PRO for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.