exam questions

Exam 300-710 All Questions

View all questions & answers for the 300-710 exam

Exam 300-710 topic 1 question 17 discussion

Actual exam question from Cisco's 300-710
Question #: 17
Topic #: 1
[All 300-710 Questions]

An organization has noticed that malware was downloaded from a website that does not currently have a known bad reputation. How will this issue be addressed globally in the quickest way possible and with the least amount of impact?

  • A. by creating a URL object in the policy to block the website.
  • B. Cisco Talos will automatically update the policies.
  • C. by denying outbound web access
  • D. by isolating the endpoint
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
ASIFIMRAN
Highly Voted 3 years, 10 months ago
Correct Ans A
upvoted 6 times
...
squirrelzzz
Most Recent 9 months, 4 weeks ago
Selected Answer: B
Talos submission
upvoted 1 times
...
Cokamaniako
2 years ago
Selected Answer: A
quickest way possible The anser is A
upvoted 1 times
...
Joe_Blue
2 years, 2 months ago
Selected Answer: A
A. by creating a URL object in the policy to block the website. Creating a URL object in the policy to block the website is the quickest way to address the issue globally with the least amount of impact. This approach is more targeted and less disruptive than denying all outbound web access or isolating the endpoint. Cisco Talos may eventually update the policies, but it could take some time before the new threat is identified and added to the blacklist.
upvoted 1 times
...
Mevijil
2 years, 5 months ago
Selected Answer: A
I believe it is A - I think they mean 'global' here in the sense that it needs to be addressed across the FMC deployment
upvoted 2 times
...
BorZol
2 years, 8 months ago
Does not currently bad reputation... Threat Grid could be a good solution - it can chack it in sandbox and set a bad reputation but it is time consuming. Correct is A
upvoted 1 times
...
aaInman
2 years, 11 months ago
A = real-world scenario, as someone who manages these devices I do answer A on a regular basis. It takes about 3-minutes to implement, is global to the org, and only impacts the malicious site. When I can do this myself why in the world would I submit it to Talos and keep my fingers crossed while there is potential for malware to spread throughout my network.
upvoted 2 times
...
hz033
3 years ago
tricky is the following, "How will this issue be addressed globally" and "in the quickest way possible" and "with the least amount of impact" How will this issue be addressed globally - The answer can be B, but "in the quickest way possible" - The answer will be A We can not wait for Talos to do an update because this is not the quickest way. so I vote for A
upvoted 4 times
...
Reece_S
3 years ago
Answer is B. You can do a manual submission to Talos and the disposition returned will be updated. Also it says "least amount of impact". Answer A will need to be deployed after you change the policy.
upvoted 2 times
Cokamaniako
2 years ago
quickest way possible The anser is A
upvoted 1 times
...
Shortbusruss
1 year, 11 months ago
You have a lotta confidence in your answer, given that you are presupposing the exam question writer is expecting the exam taker to make a jump of logic that 1. option B requires manual intervention on the engineer's part, 2. That Talos will update disposition on a timely matter, instead of an hour or two, and meanwhile, connections from your network can still reach the malicious site and spew malware into your environment. Answer is A.
upvoted 1 times
...
...
orotta
3 years, 3 months ago
There are four keywords in the question: Organization, globally, quickest and least amount of impact Globally means worldwide, if it is referring to internal, it should say organizational Talos feeds are updated by default every hour. You can change the update frequency. I would go for B. https://www.cisco.com/c/en/us/td/docs/security/firepower/623/fdm/fptd-fdm-config-guide-623/fptd-fdm-sec-intel.html
upvoted 2 times
...
IPsecchio
3 years, 5 months ago
the correct answer is?
upvoted 1 times
...
ccnp_archer_dk
3 years, 6 months ago
Globally doesnt mean world wide, but instead globally within your company (as apposed to locally - device specific). Therefore A must be the correct answer.
upvoted 2 times
...
essie007
3 years, 10 months ago
I would expect the correct answer to be about blacklisting
upvoted 2 times
...
Bobster02
3 years, 11 months ago
50/50 chance
upvoted 1 times
...
kakakayayaya
3 years, 11 months ago
Cisco Talos will not rely on your malware detection verdict automatically. It might happen what site will never be added to Talos.
upvoted 1 times
...
Bobster02
3 years, 11 months ago
I agree that it may take some time to get Cisco Talos updates, however, the key words are ADDRESSED GLOBALLY, therefore answer B will have my vote.
upvoted 1 times
...
kakakayayaya
3 years, 11 months ago
We can wait a lot until Talos adds URL to DB. A - better decision.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago