Exam 156-21581 All QuestionsBrowse all questions from this exam
Question 149

You have discovered suspicious activity in your network. What is the BEST immediate action to take?

    Correct Answer: D

    Creating a Suspicious Activity Monitoring (SAM) rule to block the traffic is the best immediate action when suspicious activity is detected in the network. SAM rules are specifically designed to quickly respond to and mitigate ongoing suspicious activities. Unlike policy rules, SAM rules are dynamic and can be adjusted or removed once the threat has been fully identified and addressed, allowing for more agile and effective threat response.

Discussion
bernardesgoOption: D

D os correct

18408Option: D

D is correct

shadow_89Option: D

D is correct

luismgOption: D

Create SAM rule, D

Walking06Option: D

D is the correct one

mfhashmiOption: D

D is correct