Which combination of email threat protection design elements would provide comprehensive coverage against phishing, ransomware, BEC, malware, and spoofing for a large enterprise?
Correct Answer: SPF/DKIM/DMARC enforcement for anti-spoofing, sandboxing/detonation for malware and ransomware attachments, behavioral/content analysis with out-of-band verification for BEC, and EDR integration for post-delivery containment
Explanation: Anti-spoofing enforcement, sandboxing, behavioral analysis with out-of-band verification, and EDR integration together provide comprehensive coverage, unlike anti-spoofing alone, sandboxing limited to inbound only, behavioral analysis with no verification step, EDR limited to devices with no email, or disabling anti-spoofing to reduce overhead.
Correct Answer: SPF/DKIM/DMARC enforcement for anti-spoofing, sandboxing/detonation for malware and ransomware attachments, behavioral/content analysis with out-of-band verification for BEC, and EDR integration for post-delivery containment
Explanation: Anti-spoofing enforcement, sandboxing, behavioral analysis with out-of-band verification, and EDR integration together provide comprehensive coverage, unlike anti-spoofing alone, sandboxing limited to inbound only, behavioral analysis with no verification step, EDR limited to devices with no email, or disabling anti-spoofing to reduce overhead.