300-220 CBRTHD: Conducting Threat Hunting and Defending using Cisco Technologies for Cybersecurity
By Cisco · Question Mode
QuestionQ53
Threat Hunting Processes
The security team detects an alert for a potentially malicious file named Financial_Data_123456789.pdf that a user downloaded. After reviewing SIEM logs and Cisco Secure Endpoint, the team confirms that the file was obtained from an untrusted website. Hash analysis of the file returns an unknown status.
Which action must be taken next?
Community Discussion
No comments yet. Be the first to start the discussion!
Community Discussion