nerdexam
(ISC)2(ISC)2

SSCP · Question #1113

SSCP Question #1113: Real Exam Question with Answer & Explanation

The correct answer is D: Detective. An Intrusion Detection System (IDS) is classified as a detective countermeasure because its primary function is to monitor for and alert about suspicious activities or intrusions rather than actively stopping them.

Submitted by deeparc· Apr 18, 2026Security Concepts and Practices

Question

An intrusion detection system is an example of what type of countermeasure?

Options

  • APreventative
  • BCorrective
  • CSubjective
  • DDetective
  • EPostulative

Explanation

An Intrusion Detection System (IDS) is classified as a detective countermeasure because its primary function is to monitor for and alert about suspicious activities or intrusions rather than actively stopping them.

Common mistakes.

  • A. Preventative countermeasures aim to stop an attack from happening in the first place, such as firewalls or access controls, which is not the primary function of an IDS.
  • B. Corrective countermeasures aim to fix or mitigate the impact of an incident after it has occurred, such as backups or disaster recovery plans.
  • C. "Subjective" is not a standard category for security countermeasures.
  • E. "Postulative" is not a standard category for security countermeasures.

Concept tested. Types of security countermeasures (Detective control)

Reference. https://learn.microsoft.com/en-us/azure/architecture/framework/security/design-network-segmentation#security-controls-in-network-segmentation

Topics

#Intrusion Detection System#Security Controls#Countermeasures#Detective Controls

Community Discussion

No community discussion yet for this question.

Full SSCP PracticeBrowse All SSCP Questions