QuestionQ46

Threat Hunting Techniques

A company suffered a DDoS attack targeting its public-facing IP addresses, resulting in a network outage. The company has a next-generation firewall and a core switch that connects several network subnets. The security team wants to prevent a recurrence. As a precaution, the team deploys a second firewall for load balancing.

Which additional action should the team recommend to mitigate similar attacks?

Explanation

A traffic scrubbing service diverts inbound traffic to scalable provider infrastructure, where malicious DDoS traffic is filtered or discarded and only legitimate traffic is forwarded to the organization. This mitigates volumetric attacks that can exhaust the public network connection before on-premises firewalls can handle the traffic.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!