DRAG DROP [Security Concepts] Drag and drop the capabilities from the left onto the correct technologies on the right.
Next Generation Intrusion Prevention System matches with "superior threat prevention and mitigation for known and unknown threats," while Advanced Malware Protection is about "detection, blocking, tracking, analysis, and remediation." App-layer control lines up with "application control and URL filtering," and WSA is the one described as a "combined integrated solution." I think this is right, since AMP's retrospective functions get overlooked easily-NGIPS sounds similar but it's more about active prevention than after-the-fact tracking. Anyone see it differently?
This matches typical Cisco exam mappings. NGIPS gets "superior threat prevention," AMP is "detection, blocking, tracking, analysis, and remediation," app control/URL filtering is the application-layer control one, and WSA is the integrated web protection. Official study guide has this breakdown if you want to double-check.
NGIPS gets "superior threat prevention and mitigation for known and unknown threats" since that's its main purpose. AMP goes with "detection, blocking, tracking, analysis, and remediation" because that's the retrospective angle. Seen this on study guides so pretty confident but let me know if I missed something.
AMP → detection, blocking, tracking, analysis, and remediation
App control/URL filtering → application-layer control on apps and URLs
WSA → combined web protection solution.
Not seeing a reason to swap AMP and NGIPS here-the keywords match the specific tech well. NGIPS is all about broad threat prevention, while AMP does tracking/analysis/remediation (that after-the-fact stuff). Sometimes WSA throws people off but it's definitely the all-in-one web defense. Pretty confident but open if you spot something off.
