exam questions

Exam 350-701 All Questions

View all questions & answers for the 350-701 exam

Exam 350-701 topic 1 question 525 discussion

Actual exam question from Cisco's 350-701
Question #: 525
Topic #: 1
[All 350-701 Questions]

What is offered by an EPP solution but not an EDR solution?

  • A. investigation
  • B. containment
  • C. sandboxing
  • D. detection
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
sull3y
12 months ago
C:Sandboxing is a technique used in security solutions to isolate potentially malicious files or programs in a controlled environment, known as a sandbox. It allows these files to be executed or analyzed in a safe and isolated environment, without posing a risk to the actual system. This helps in detecting and analyzing suspicious behaviors or malware without compromising the integrity of the endpoint or network. EDR solutions typically focus on detection, investigation, and response to advanced threats, whereas sandboxing is a feature commonly found in EPP solutions that provide broader endpoint protection capabilities.
upvoted 2 times
...
Totosos1
1 year, 1 month ago
Selected Answer: C
It's definitely C: https://www.cisco.com/c/en_uk/products/security/what-is-endpoint-protection-platform.html "Sandboxing. Sandboxing allows the endpoint protection platform to isolate suspect files into a safe environment. Within this environment, the endpoint protection platform can safely detonate and monitor the nature of the files without risking detriment to the rest of the system."
upvoted 2 times
...
Tuxzinator
1 year, 3 months ago
not C the investigative process, sandboxing is another critical capability. Sandboxing can be used at the perimeter, to help grant or deny access, but it can also be used effectively after the point of entry. Sandboxing is when the file is isolated into a simulated environment and tested and monitored. EDR can provide sandboxing through integrated Cisco Secure Malware Analytics. Sandboxing: Sandboxing allows an EPP to isolate suspect files in a safe environment. Within this environment, the EPP can safely detonate and monitor the nature of the files without risking detriment to the rest of the system.
upvoted 1 times
cyberwhizzy0
10 months, 1 week ago
The answer is C. Let's stop confusing readers, always back up your claims with appropriate URLs Sandboxing. Sandboxing allows the endpoint protection platform to isolate suspect files into a safe environment. Within this environment, the endpoint protection platform can safely detonate and monitor the nature of the files without risking detriment to the rest of the system https://www.cisco.com/c/en_uk/products/security/what-is-endpoint-protection-platform.html#~how-an-epp-works
upvoted 2 times
...
...
Net4dd
1 year, 4 months ago
C is correct https://blogs.cisco.com/security/endpoint-protection-platform-epp-vs-endpoint-detection-response-edr
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago