Free 350-701 Exam Braindumps (page: 31)

Page 31 of 153

Which capability is exclusive to a Cisco AMP public cloud instance as compared to a private cloud instance?

  1. RBAC
  2. ETHOS detection engine
  3. SPERO detection engine
  4. TETRA detection engine

Answer(s): B



An engineer is configuring AMP for endpoints and wants to block certain files from executing.
Which outbreak control method is used to accomplish this task?

  1. device flow correlation
  2. simple detections
  3. application blocking list
  4. advanced custom detections

Answer(s): C



Which function is the primary function of Cisco AMP threat Grid?

  1. automated email encryption
  2. applying a real-time URI blacklist
  3. automated malware analysis
  4. monitoring network traffic

Answer(s): C



What are two list types within AMP for Endpoints Outbreak Control? (Choose two)

  1. blocked ports
  2. simple custom detections
  3. command and control
  4. allowed applications
  5. URL

Answer(s): B,D

Explanation:

Advanced Malware Protection (AMP) for Endpoints offers a variety of lists, referred to as Outbreak Control, that allow you to customize it to your needs. The main lists are: Simple Custom Detections, Blocked Applications, Allowed Applications, Advanced Custom Detections, and IP Blocked and Allowed Lists.
A Simple Custom Detection list is similar to a blocked list. These are files that you want to detect and quarantine.
Allowed applications lists are for files you never want to convict. Some examples are a custom application that is detected by a generic engine or a standard image that you use throughout the company


Reference:

https://docs.amp.cisco.com/AMP%20for%20Endpoints%20User%20Guide.pdf



Page 31 of 153



Post your Comments and Discuss Cisco® 350-701 exam with other Community members:

David A commented on January 16, 2024
Good Colombia
Anonymous
upvote

Kim commented on May 25, 2023
I just purchased and downloaded my files. Everything looks good so far.
UNITED STATES
upvote