Q14
Single choice
A SecOps engineer identifies a single VM as a malware suspect and must contain it quickly without redesigning the application policy set. Which policy should be used?