A SOC team receives multiple alerts by a rule that detects requests to malicious URLs and informs the incident response team to block the malicious URLs requested on the firewall. Which action will improve the effectiveness of the process?
A.
Block local to remote HTTP/HTTPS requests on the firewall for users who triggered the rule.
B.
Inform the user by enabling an automated email response when the rule is triggered.
C.
Inform the incident response team by enabling an automated email response when the rule is triggered.
D.
Create an automation script for blocking URLs on the firewall when the rule is triggered.
Creating an automation script for blocking URLs on the firewall when the rule is triggered will improve the effectiveness of the process by reducing the time between the detection of a request to a malicious URL and the blocking action. This proactive approach ensures that the URLs are blocked immediately, minimizing the window of opportunity for the threat to cause harm
D. Create an automation script for blocking URLs on the firewall when the rule is triggered.
Creating an automation script that blocks malicious URLs on the firewall immediately when the rule is triggered can improve the effectiveness of the process by reducing the response time and minimizing the potential damage of a malicious request. This would eliminate the need for manual intervention and ensure that the malicious request is stopped in a timely and efficient manner. - ChatGPT
D. Create an automation script for blocking URLs on the firewall when the rule is triggered.
upvoted 4 times
...
This section is not available anymore. Please use the main Exam Page.350-201 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
27ea763
4 months, 4 weeks agoTrainingTeam
8 months agoAlizade
1 year, 6 months agoDrVoIP
2 years, 4 months agoBobster02
3 years, 6 months ago