200-901 exam dumps

200-901 practice question 74 of 204

Cisco DevNet Associate. Associate level, Cisco. Free question with the correct answer and a full explanation.

200-901 Question 74

Single answer

A company has deployed Cisco Secure Endpoint, Cisco Identity Services Engine (ISE), and Cisco Secure Malware Analytics as part of their security architecture. After detecting a suspicious executable on an employee's device, the IT team wants to analyze the file for threats and automatically quarantine the device if the file is malicious. Which solution integration enables this automated response?

  1. A

    Cisco Secure Endpoint integrates with Cisco Secure Malware Analytics to analyze files and uses Cisco ISE for quarantine actions.

  2. B

    Cisco Secure Endpoint uses machine learning to analyze files and automatically quarantines the device without external integrations.

  3. C

    Cisco ISE integrates directly with Cisco Secure Malware Analytics to analyze files and uses Secure Endpoint for quarantine.

  4. D

    Cisco Secure Malware Analytics directly quarantines the device after analyzing the file without involving other solutions.

Show answer and explanation

Correct answer: A

Explanation

The correct integration involves Cisco Secure Endpoint to detect suspicious files and send them to Cisco Secure Malware Analytics for analysis. If a file is confirmed as malicious, Cisco Secure Endpoint can collaborate with Cisco ISE to quarantine the affected device, ensuring an automated response to threats within the network.

  • A. Correct.

    This is correct. Cisco Secure Endpoint can send suspicious files to Cisco Secure Malware Analytics for analysis and, upon detecting a threat, can work with Cisco ISE to quarantine the device automatically.

  • B. Incorrect.

    This is incorrect. While Cisco Secure Endpoint does use advanced detection mechanisms, it requires integration with Cisco ISE to quarantine devices and with Cisco Secure Malware Analytics to analyze files.

  • C. Incorrect.

    This is incorrect. Cisco ISE does not directly analyze files. It handles network access control and quarantine actions based on threat intelligence provided by other solutions.

  • D. Incorrect.

    This is incorrect. Cisco Secure Malware Analytics focuses on file analysis and does not take direct quarantine actions on devices. It relies on integrations with other solutions like Cisco Secure Endpoint and Cisco ISE for response.

Timed practice exam

Take a 200-901 practice test under exam conditions

75 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam