🔥 3-day streak
Cisco CCNP Security SCOR (350-701)76 / 146
Question 76 of 146
A security engineer deploys Cisco Secure Firewall (FTD) with a Malware and File policy enabled. A user downloads a file that AMP initially assigns a 'Clean' disposition, so it is allowed through. Six hours later, the AMP cloud reclassifies that file's SHA-256 hash as malicious based on new threat intelligence. The engineer wants the FMC to alert on the fact that this file, previously allowed, is now known to be malicious. Which AMP capability provides this after-the-fact notification?
Reviewed for accuracy · Report an issueNext question