Dell EMC Associate – Information Storage and Management v4 — Question 72
A company is using an intrusion detection and prevention system (IDPS) to scan and analyze intrusion events.
Which IDPS technique uses a database that contains known attack patterns?
Answer options
- A. Role-based
- B. Profile-based
- C. Signature-based
- D. Anomaly-based
Correct answer: C
Explanation
The correct answer is C, Signature-based, as this technique identifies intrusions by comparing traffic patterns to a database of known attack signatures. The other options, such as Role-based and Profile-based, do not specifically use a database of known attacks, while Anomaly-based techniques focus on deviations from normal behavior rather than known patterns.