ISC2 Systems Security Certified Practitioner (SSCP) Practice Question
Your company hosts sensitive workloads on Amazon EC2. Compliance now requires a host-level control that can hook kernel APIs, watch for buffer-overflow or code-injection attempts, and immediately kill the offending thread even if the instance has no network connectivity. Which specific capability of a host-based intrusion prevention system (HIPS) satisfies this requirement?
Kernel-level behavioral analysis that intercepts and blocks malicious system calls
File-integrity monitoring that hashes critical system files on a schedule
Network anomaly detection that learns normal inbound traffic patterns
Agent-based log forwarding to an external SIEM over encrypted channels
Kernel-level behavioral analysis (also called system-call interception) is a core HIPS feature. The agent hooks low-level OS APIs, inspects execution flow for exploits such as buffer overflows, and can automatically block or terminate the process in real time. File-integrity monitoring only records changes, log forwarding merely exports events, and network anomaly detection belongs to NIDS/NIPS rather than HIPS, so none of those meet the requirement.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a kernel-level behavioral analysis?
Open an interactive chat with Bash
How does buffer overflow exploitation work?
Open an interactive chat with Bash
How is HIPS different from NIDS/NIPS?
Open an interactive chat with Bash
ISC2 Systems Security Certified Practitioner (SSCP)
Systems and Application Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99 $11.99
$11.99/mo
Billed monthly, Cancel any time.
$19.99 after promotion ends
3 Month Pass
$44.99 $26.99
$8.99/mo
One time purchase of $26.99, Does not auto-renew.
$44.99 after promotion ends
Save $18!
MOST POPULAR
Annual Pass
$119.99 $71.99
$5.99/mo
One time purchase of $71.99, Does not auto-renew.
$119.99 after promotion ends
Save $48!
BEST DEAL
Lifetime Pass
$189.99 $113.99
One time purchase, Good for life.
Save $76!
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .