Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam SSCP All Questions
Exam SSCP All Questions

View all questions & answers for the SSCP exam

ISC 2 Credentials SSCP Question # 127 Topic 15 Discussion

SSCP Exam Topic 15 Question 127 Discussion:
Question #: 127
Topic #: 15

Which of the following best describes signature-based detection?


A.

Compare source code, looking for events or sets of events that could cause damage to a system or network.


B.

Compare system activity for the behaviour patterns of new attacks.


C.

Compare system activity, looking for events or sets of events that match a predefined pattern of events that describe a known attack.


D.

Compare network nodes looking for objects or sets of objects that match a predefined pattern of objects that may describe a known attack.


Get Premium SSCP Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.