200-201 exam dumps

200-201 practice question 245 of 405

Cisco Cybersecurity Associate. Associate level, Cisco. Free question with the correct answer and a full explanation.

200-201 Question 245

Single answer

A cybersecurity analyst is monitoring an Intrusion Detection System (IDS) in a corporate environment. The system fails to alert the analyst about a known malicious activity that successfully bypassed the company's firewall and caused data exfiltration. Which of the following best describes this scenario?

  1. A

    True positive

  2. B

    False positive

  3. C

    False negative

  4. D

    True negative

Show answer and explanation

Correct answer: C

Explanation

This scenario describes a false negative because the Intrusion Detection System (IDS) failed to detect and alert on a real malicious activity. Understanding false negatives is critical in cybersecurity operations, as they represent missed threats that can lead to significant security breaches if not addressed.

  • A. Incorrect.

    A true positive occurs when a system correctly identifies malicious activity, which is not the case here since the activity was missed.

  • B. Incorrect.

    A false positive occurs when a system incorrectly flags benign activity as malicious, which is not applicable in this scenario since no benign activity was flagged.

  • C. Correct.

    A false negative occurs when a system fails to detect actual malicious activity, which matches the scenario described where the IDS failed to alert on a real threat.

  • D. Incorrect.

    A true negative occurs when the system correctly identifies benign activity as non-malicious, which does not apply here since malicious activity was missed.

Timed practice exam

Take a 200-201 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam