CompTIA SecurityX (CAS-005) CAS-005 — Question 174
Topic 1 · Question 174 of 393
Topic 1 · Question 174
An organization recently acquired another company that is running a different EDR solution. A SOC analyst wants to automate the isolation of endpoints that are found to be compromised. Which of the following workflows best mitigates the risk of false positives and reduces the spread of malicious code?