Which combination of AMP capabilities together provides the most complete protection against both known and previously unseen malware across an organization's network, email, web, and endpoint enforcement points?
Correct Answer: Shared Talos-driven reputation and signature detection, sandboxing for unknown files, machine learning/fuzzy fingerprinting for variants, and retrospective file trajectory analysis, unified across all enforcement points
Explanation: Complete AMP protection combines shared threat intelligence, sandboxing, ML/fuzzy detection, and retrospective trajectory analysis across all enforcement points, unlike relying on any single technique alone, endpoint-only deployment, or an infrequent manually shared static blocklist.
Correct Answer: Shared Talos-driven reputation and signature detection, sandboxing for unknown files, machine learning/fuzzy fingerprinting for variants, and retrospective file trajectory analysis, unified across all enforcement points
Explanation: Complete AMP protection combines shared threat intelligence, sandboxing, ML/fuzzy detection, and retrospective trajectory analysis across all enforcement points, unlike relying on any single technique alone, endpoint-only deployment, or an infrequent manually shared static blocklist.