Question 1 of 29
What factors determine the most effective and responsible approach to tuning an Intrusion Detection and Prevention System (IDPS) when faced with an increasing volume of false positive alerts that are impacting network performance?
A data-driven analysis of IDPS logs and alerts, followed by a phased, controlled testing and implementation of policy adjustments, prioritizing minimal disruption to legitimate operations.
Immediately implementing broad changes to IDPS rules to silence the most frequent alerts, based on user feedback about network slowness.
Disabling IDPS alerts for specific traffic types that are frequently flagged as suspicious, without further investigation, to improve network responsiveness.
Continuing to rely on the IDPS vendor's default rule sets and configurations, assuming they are sufficient for the organization's security needs.

Preparing for CompTIA CySA+ Exam? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free