ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 77 - ECSS discussion

Report
Export

Messy, a network defender, was hired to secure an organization's internal network. He deployed an IDS in which the detection process depends on observing and comparing the observed events with the normal behavior and then detecting any deviation from it.

Identify the type of IDS employed by Messy in the above scenario.

A.

Stateful protocol analysis

Answers
A.

Stateful protocol analysis

B.

Anomaly-based

Answers
B.

Anomaly-based

C.

Signature-based

Answers
C.

Signature-based

D.

Application proxy

Answers
D.

Application proxy

Suggested answer: B

Explanation:

Messy has deployed ananomaly-basedIntrusion Detection System (IDS). This type of IDS observes and compares observed events with normal behavior, detecting deviations from the established patterns.It identifies anomalies that may indicate potential security threats.Reference: EC-Council Certified Security Specialist (E|CSS) course materials12.

asked 24/10/2024
Ali Reza Farahnak
50 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first