nerdexam
Splunk

SPLK-5001 · Question #115

A network security tool that continuously monitors a network for malicious activity and takes action to block it is known as which of the following?

The correct answer is C. Intrusion Prevention System. An Intrusion Prevention System (IPS) not only monitors network traffic for malicious activity but also automatically takes action, such as dropping or rejecting packets, to block threats in real time. An IDS, by contrast, only detects and alerts without actively blocking.

Introduction to Cybersecurity and Splunk

Question

A network security tool that continuously monitors a network for malicious activity and takes action to block it is known as which of the following?

Options

  • ASIEM
  • BIntrusion Detection System
  • CIntrusion Prevention System
  • DPacket Sniffer

How the community answered

(50 responses)
  • A
    2% (1)
  • B
    2% (1)
  • C
    92% (46)
  • D
    4% (2)

Explanation

An Intrusion Prevention System (IPS) not only monitors network traffic for malicious activity but also automatically takes action, such as dropping or rejecting packets, to block threats in real time. An IDS, by contrast, only detects and alerts without actively blocking.

Topics

#IPS#intrusion prevention system#network security tools#active blocking

Community Discussion

No community discussion yet for this question.

Full SPLK-5001 Practice