exam questions

Exam 200-201 All Questions

View all questions & answers for the 200-201 exam

Exam 200-201 topic 1 question 318 discussion

Actual exam question from Cisco's 200-201
Question #: 318
Topic #: 1
[All 200-201 Questions]

What is a comparison between rule-based and statistical detection?

  • A. Statistical is based on measured data while rule-based uses the evaluated probability approach.
  • B. Statistical uses the probability approach while rule-based is based on measured data.
  • C. Rule-based is based on assumptions and statistical uses data known beforehand.
  • D. Rule-based uses data known beforehand and statistical is based on assumptions.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
GreyDagger
Highly Voted 6 months, 4 weeks ago
The correct answer is B. Remember that statistical will always involve probability. Rule based is based on measured data.
upvoted 5 times
...
2c44ebe
Most Recent 1 month, 2 weeks ago
Selected Answer: D
Statistical detection is based on observed data and uses probabilistic models to identify deviations from expected behavior (anomalies). Although it uses probability, it relies on measured data, not just theoretical assumptions. The option "Rule-based uses data known beforehand and statistical is based on assumptions" is correct because it reflects that rule-based detection uses prior knowledge (signatures or fixed rules), while statistical detection models normal behaviors (well-founded assumptions). The option "Statistical uses the probability approach while rule-based is based on measured data" is not valid because it claims that rule-based detection is based on measured data, which is incorrect: it is based on known rules, not on statistical measurements.
upvoted 1 times
...
LuCKyDAM
5 months ago
Selected Answer: B
Must be B, not D. Do not like "d" phrasing
upvoted 1 times
...
Ben789456
10 months, 2 weeks ago
Selected Answer: D
ANSWER D
upvoted 4 times
...
RoBery
11 months ago
D- is the correct one
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...