Cisco 350-201 Exam - Topic 10 Question 101 Discussion
A SOC team receives multiple alerts by a rule that detects requests to malicious URLs and informs the incident response team to block the malicious URLs requested on the firewall. Which action will improve the effectiveness of the process?
B) Inform the user by enabling an automated email response when the rule is triggered. and D) Create an automation script for blocking URLs on the firewall when the rule is triggered.
A) Block local to remote HTTP/HTTPS requests on the firewall for users who triggered the rule.
C) Inform the incident response team by enabling an automated email response when the rule is triggered.
Tijuana
9 months agoJoanne
9 months agoKerry
10 months agoCarmela
10 months agoRolande
10 months agoDannette
10 months agoYasuko
11 months agoTequila
11 months agoKathryn
11 months agoTiffiny
11 months agoChristoper
11 months agoJose
11 months agoChandra
11 months agoSue
1 year agoMitzie
1 year agoJesusa
1 year agoDella
1 year agoFrancesco
1 year agoNidia
1 year agoCarri
1 year agoBea
1 year agoMabel
1 year agoAdaline
1 year agoWava
1 year agoLazaro
1 year agoFiliberto
1 year agoAdela
1 year ago