Which security control is complementary to IPS, providing a second layer of protection against network attacks?
A. Network Protection
B. Antimalware
C. Host Integrity
D. Firewall
正解:D
質問 2:
Which type of security threat is used by attackers to exploit vulnerable applications?
A. Lateral Movement
B. Command and Control
C. Credential Access
D. Privilege Escalation
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
Files are blocked by hash in the deny list policy. Which algorithm is supported, in addition to MD5?
A. SHA2
B. SHA256
C. MD5 "Salted"
D. SHA256 "salted"
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
Which two (2) considerations must an administrator make when enabling Application Learning in an environment? (Select two.)
A. Application Learning can generate significant CPU or memory use on a Symantec Endpoint Protection Manager.
B. Application Learning requires a file fingerprint list to be created in advance.
C. E.Application Learning is dependent on Insight.
D. Application Learning can generate increased false positives.
E. Application Learning should be deployed on a small group of systems in the enterprise.
正解:D,E
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
Which SES feature helps to ensure that devices are compliant with a company's security standards?
A. Adaptive Protection
B. Host Integrity
C. Intensive Protection
D. Trusted Updater
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
What does a medium-priority incident indicate?
A. The incident can safely be ignored
B. The incident does not affect critical business operation
C. The incident may have an impact on the business
D. The incident can result in a business outage
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 7:
From which source can an administrator retrieve the SESC Network Integrity agent for a Windows 10 S mode endpoint?
A. MDM distribution
B. Microsoft Store
C. ICDm package
D. SESC Installation files
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 8:
Performance on a SEPM is less than expected and generates intermittent errors. How could the system administrators be notified of performance issues?
A. Add aServer health alertand specify how often the notifications need to be raised. Specify the e-mail address that needs to be notified and the action when the server health becomes poor.
B. Add aSystem event alertand specify how often the notifications need to be raised. Specify the e-mail address that needs to be notified and the action when the server health becomes poor.
C. Add aClient security alertand specify how often the notifications need to be raised. Specify the e-mail address that needs to be notified and the action when the server health becomes poor.
D. Add anAuthentication alertand specify how often the notifications need to be raised. Specify the e- mail address that needs to be notified and the action when the server health becomes poor.
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 9:
What does the Endpoint Communication Channel (ECC) 2.0 allow Symantec EDR to directly connect to?
A. SEP Endpoints
B. SEDR Cloud Console
C. Synapse
D. SEPM
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
Hinagata -
250-580を取得する必要が出てきたのでPass4Testここで購入。勉強しやすくなっていました。一段一段上がるような感覚で理解できるようになりました。