ExamGecko
Question list
Search
Search

List of questions

Search

Question 43 - PCCSE discussion

Report
Export

How are the following categorized?

Backdoor account access Hijacked processes Lateral movement

Port scanning

A.
audits
Answers
A.
audits
B.
incidents
Answers
B.
incidents
C.
admission controllers
Answers
C.
admission controllers
D.
models
Answers
D.
models
Suggested answer: B

Explanation:

The activities listed (Backdoor account access, Hijacked processes, Lateral movement, Port scanning) are categorized as incidents (option B). Incidents represent security events or patterns of activity that indicate potential security breaches or malicious behavior within the environment. Prisma Cloud identifies and classifies such activities as incidents to highlight significant security concerns that require investigation and potential remediation. This categorization helps security teams prioritize their response efforts, focusing on activities that pose a real threat to the integrity and security of the cloud environment. By distinguishing incidents from other types of security findings, Prisma Cloud enables more effective incident response and threat management processes.

asked 23/09/2024
Javier Portabales
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first