QuestionQ66

Incident Response Techniques

A company recently experienced a data-leak incident. During the investigation, a security engineer found that several employees had accessed a malicious link. Further investigation identified targeted phishing attempts against macOS systems that resulted in backdoor installations and data compromise. Which two security solutions should the security engineer recommend to help prevent similar attacks in the future?

Choose two
  • A endpoint detection and response
  • B secure email gateway
  • C data loss prevention
  • D intrusion prevention system
  • E web application firewall
Explanation

A secure email gateway reduces the phishing attack vector by detecting and filtering malicious email content and URLs before users access them. Endpoint detection and response provides visibility into macOS endpoint activity and enables detection, investigation, containment, and remediation of backdoors after endpoint compromise.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!