Question 1 of 30
A financial services company is implementing Sourcefire FireAMP to enhance its endpoint security. During a routine security assessment, the security team discovers that several endpoints are exhibiting unusual behavior, such as unexpected file modifications and unauthorized access attempts to sensitive data. The team needs to determine the most effective response strategy to mitigate these threats while ensuring compliance with industry regulations. Which approach should the team prioritize to address the situation effectively?
Conduct a thorough investigation of the affected endpoints, isolating them from the network to prevent further damage, and analyze the logs to identify the root cause of the anomalies.
Immediately block all network traffic to and from the affected endpoints without further analysis to prevent data loss.
Notify all employees about the potential breach and advise them to change their passwords as a precautionary measure.
Implement a company-wide policy to restrict access to sensitive data without investigating the specific incidents.

Preparing for CISCO 500-275 Securing Cisco Networks with Sourcefire FireAMP Endpoints? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free