Falcon Prevent Flashcards

1
Q

ML on Sensor - Benefits + Questions

A

Benefits: Prevents new and old malware strains, small footprint on machin, sensor is no greater the 25 MB, less then 1% cpu
Question: What AV do you use? What other security agents do you have? how do you computers perform when AV is running

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Block Known Bad - Benefits + Questions

A

Benefits: No .DAT = decrease the footprint on endpoint, still protected by the crowd of intel
Questions: Does your AV use signatures, does it require signature updates?

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Exploit Mitigation - Benefits + Questions

A

Benefit: Helps stop know and zero day attack ( unknown exploit in the wild that exposes a vulnerability in software and can cause issues before anyone knows what happenend)
Question: How are you mitigating against potential exploits today

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Indicator of Attacks ( IOA )

A
How well did you know this?
1
Not at all
2
3
4
5
Perfectly