🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 7 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

A security administrator must protect 150 corporate Windows 10 laptops used by developers who frequently install new open-source tools. Policy requires that each newly downloaded executable be scanned immediately before its first run, that previously unseen (zero-day) malware be detected, and that the solution impose minimal administrative overhead for keeping malware definitions current. Which approach best meets these requirements?

  • Deploy a cloud-managed next-generation endpoint protection platform that performs on-access scanning with signature and behavior-based detection and retrieves updates automatically from the vendor's service.

  • Create a PowerShell logon script that downloads the latest antivirus signature (DAT) files each morning and schedules a full disk scan at midnight.

  • Install a network-based anti-malware proxy to inspect all VPN traffic from the laptops before it reaches internal resources.

  • Enable AppLocker to allow only Microsoft-signed binaries, blocking execution of all other downloaded files unless manually whitelisted by IT.

ISC2 Systems Security Certified Practitioner (SSCP)
Systems and Application Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot