
[2023年更新]合格できるSymantec 250-561試験最新72問題
ゲット2023年最新の無料Symantec 250-561試験問題 アンサー
質問 # 28
Which policy should an administrator edit to utilize the Symantec LiveUpdate server for pre-release content?
- A. The Firewall Policy
- B. The LiveUpdate Policy
- C. The System Policy
- D. The System Schedule Policy
正解:B
質問 # 29
Which option should an administrator utilize to temporarily or permanently block a file?
- A. Delete
- B. Encrypt
- C. Blacklist
- D. Hide
正解:C
質問 # 30
An administrator needs to create a new Report Template that will be used to track firewall activity. Which two (2) report template settings are optional? (Select 2)
- A. Size restrictions
- B. Time frame
- C. Email recipients
- D. Output format
- E. Generation schedule
正解:C、D
質問 # 31
Which two (2) scan range options are available to an administrator for locating unmanaged endpoints? (Select two)
- A. Subnet Range
- B. Entire Subnet
- C. Entire Network
- D. IP range within network
- E. IP range within subnet
正解:A、D
質問 # 32
Which report template out format should an administrator utilize to generate graphical reports?
- A. HTML
- B. PFD
- C. XML
- D. XML
正解:A
質問 # 33
How long does a blacklist task remain in the My Tasks view after its automatic creation?
- A. 60 Days
- B. 180 Days
- C. 30 Days
- D. 90 Days
正解:C
質問 # 34
Wh.ch Firewall rule components should an administrator configure to block facebook.com use during business hours?
- A. Action, Application, and Schedule
- B. Application, Host(s), and Network Service
- C. Host(s), Network Interface, and Network Service
- D. Action, Hosts(s), and Schedule
正解:D
質問 # 35
Which term or expression is utilized when adversaries leverage existing tools in the environment?
- A. file-less attack
- B. living off the land
- C. script kiddies
- D. opportunistic attack
正解:C
質問 # 36
Which IPS Signature type is Primarily used to identify specific unwanted traffic?
- A. Attack
- B. Malcode
- C. Probe
- D. Audit
正解:A
質問 # 37
What version number is assigned to a duplicated policy?
- A. Zero
- B. The original policy's number plus one
- C. One
- D. The original policy's version numb
正解:B
質問 # 38
Which SES feature helps administrator apply policies based on specific endpoint profiles?
- A. Device Profiles
- B. Policy Bundles
- C. Device Groups
- D. Policy Groups
正解:D
質問 # 39
In which phase of MITRE framework would attackers exploit faults in software to directly tamper with system memory?
- A. Execution
- B. Exfiltration
- C. Discovery
- D. Defense Evasion
正解:D
質問 # 40
Which URL is responsible for notifying the SES agent that a policy change occurred in the cloud console?
- A. stnd-ipsg.crsi-symantec.com
- B. ocsp.digicert.com
- C. spoc.norton.com
- D. ent-shasta.rrs-symantec.com
正解:B
質問 # 41
Which Firewall Stealth setting prevents OS fingerprinting by sending erroneous OS information back to the attacker?
- A. Enable OS fingerprint masqueradi
- B. Disable OS fingerprint profiling
- C. Enable OS fingerprint protection
- D. Disable OS fingerprint detection
正解:A
質問 # 42
Which security threat uses malicious code to destroy evidence, break systems, or encrypt data?
- A. Impact
- B. Persistence
- C. Execution
- D. Discovery
正解:C
質問 # 43
Which antimalware intensity level is defined by the following: "Blocks files that are most certainly bad or potentially bad files. Results in a comparable number of false positives and false negatives."
- A. Level 1
- B. Level 6
- C. Level 5
- D. Level 2
正解:B
質問 # 44
An administrator suspects that several computers have become part of a botnet. What should the administrator do to detect botnet activity on the network?
- A. Set the Antimalware policy's Monitoring Level to 4
- B. Enable the IPS policy's Show notification on the device setting
- C. Add botnet related signatures to the IPS policy's Audit Signatures list
- D. Enable the Command and Control Server Firewall
正解:D
質問 # 45
Which Antimalware technology is used after all local resources have been exhausted?
- A. Reputation
- B. Emulator
- C. Sapient
- D. ITCS
正解:D
質問 # 46
What must an administrator check prior to enrolling an on-prem SEPM infrastructure into the cloud?
- A. Clients are running SEP 14.2 or later
- B. Clients are running SEP 14.1.0 or later
- C. Clients are running SEP 12-6 or later
- D. Clients are running SEP 14.0.1 or late
正解:D
質問 # 47
......
Symantec 250-561認定試験は、企業環境でエンドポイントセキュリティソリューションを管理および管理する責任を持つ専門家の知識とスキルをテストすることを目的としています。この認定試験は、サイバーセキュリティ業界で最も認知され、尊敬される資格の一つです。
高合格率250-561テスト問題集解答と正解72問題と回答:https://www.passtest.jp/Symantec/250-561-shiken.html
250-561問題集PDFとテストエンジン試験問題:https://drive.google.com/open?id=1HCy3h3A8qdl4ksFF-pOgnoEwn2TSEsdJ