Cisco Performing CyberOps Using Core Security Technologies (CBRCOR) 350-201 Question # 6 Topic 1 Discussion

Cisco Performing CyberOps Using Core Security Technologies (CBRCOR) 350-201 Question # 6 Topic 1 Discussion

350-201 Exam Topic 1 Question 6 Discussion:
Question #: 6
Topic #: 1

A SOC team receives multiple alerts by a rule that detects requests to malicious URLs and informs the incident response team to block the malicious URLs requested on the firewall. Which action will improve the effectiveness of the process?


A.

Block local to remote HTTP/HTTPS requests on the firewall for users who triggered the rule.


B.

Inform the user by enabling an automated email response when the rule is triggered.


C.

Inform the incident response team by enabling an automated email response when the rule is triggered.


D.

Create an automation script for blocking URLs on the firewall when the rule is triggered.


Get Premium 350-201 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.