CISM Exam QuestionsBrowse all questions from this exam

CISM Exam - Question 1075


Which of the following controls would BEST help to detect a targeted attack exploiting a zero-day vulnerability?

Show Answer
Correct Answer: C,D

Endpoint detection and response (EDR) is designed to detect and respond to suspicious activities on endpoints, which is crucial for identifying targeted attacks that exploit zero-day vulnerabilities. EDR solutions monitor and analyze endpoint activity to identify unusual behavior patterns and potential threats, even if the threat is exploiting an unknown or zero-day vulnerability.

Discussion

2 comments
Sign in to comment
shootnotOption: D
Apr 18, 2024

D- XDR provides a holistic view of environment by detecting incidents based on the logs from multiple sources and provide attack path analysis.

isaphiltrickOption: C
Jul 22, 2024

Endpoint Detection and Response (EDR) is designed to detect and respond to suspicious activities on endpoints, which is crucial for identifying targeted attacks that exploit zero-day vulnerabilities. EDR solutions monitor and analyze endpoint activity to identify unusual behavior patterns and potential threats, even if the threat is exploiting an unknown or zero-day vulnerability.