An organization's IT security team is researching a method to isolate potentially compromised applications while they run to prevent the scope of damage associated with their exploitation. Which of the following approaches is best suited to this objective?
1) Sandboxing
2) Firewall
3) Antivirus software
4) Intrusion detection system (IDS)