SDSI Risk Events And Requirements Practice Question
During a design review, it is determined that the current logging architecture is missing context for user identity. Which Cisco tool must be integrated with the firewall to map IP addresses to specific usernames in the logs?
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Cisco Identity Services Engine (ISE).
Cisco ISE provides the identity context (IP to user mapping) that can be sent to firewalls via pxGrid or SXP.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Cisco Defense Orchestrator.
Why it's wrong here
CDO manages policies, it does not provide identity mapping.
- ✓
Cisco Identity Services Engine (ISE).
Why this is correct
ISE provides user identity mapping to network devices for log enrichment.
- ✗
Cisco Umbrella.
Why it's wrong here
Umbrella performs DNS security and does not provide IP-to-user mapping for internal firewall logs.
- ✗
Cisco SecureX.
Why it's wrong here
SecureX aggregates logs but relies on ISE for the underlying identity data.
About these practice questions
This SDSI question is part of Courseiva's 298-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed August 2026 · checked against the official Cisco exam blueprint
This SDSI practice question is part of Courseiva's free Cisco certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SDSI exam.