nerdexam
(ISC)2

SSCP · Question #952

Which of the following is a disadvantage of a statistical anomaly-based intrusion detection system?

The correct answer is B. it may falsely detect a non-attack event that had caused a momentary anomaly in the. Some disadvantages of a statistical anomaly-based ID are that it will not detect an attack that does not significantly change the system operating characteristics, or it may falsely detect a non- attack event that had caused a momentary anomaly in the system.

Submitted by andres_qro· Apr 18, 2026Security Operations and Administration

Question

Which of the following is a disadvantage of a statistical anomaly-based intrusion detection system?

Options

  • Ait may truly detect a non-attack event that had caused a momentary anomaly in the system.
  • Bit may falsely detect a non-attack event that had caused a momentary anomaly in the
  • Cit may correctly detect a non-attack event that had caused a momentary anomaly in the
  • Dit may loosely detect a non-attack event that had caused a momentary anomaly in the

How the community answered

(16 responses)
  • A
    6% (1)
  • B
    88% (14)
  • D
    6% (1)

Explanation

Some disadvantages of a statistical anomaly-based ID are that it will not detect an attack that does not significantly change the system operating characteristics, or it may falsely detect a non- attack event that had caused a momentary anomaly in the system.

Topics

#Intrusion Detection Systems (IDS)#Anomaly Detection#False Positives#Security Monitoring

Community Discussion

No community discussion yet for this question.

Full SSCP Practice