[2023年10月]更新のCyberArk EPM-DEF問題集厳選された問題集でパスして、最短時間を目指そう
CyberArk EPM-DEF試験問題集で[2023年最新] 練習 高合格率な試験問題集問題
質問 # 27
Which threat intelligence source requires the suspect file to be sent externally?
- A. Palo Alto Wildfire
- B. VirusTotal
- C. NSRL
- D. CyberArk Application Risk Analysis Service (ARA)
正解:B
質問 # 28
When adding the EPM agent to a pre-existing security stack on workstation, what two steps are CyberArk recommendations. (Choose two.)
- A. EPM agent should never be run with any other security tools.
- B. Add EPM agent to the other security tools exclusions.
- C. Create new advanced policies for each security tool.
- D. Add any pre-existing security application to the Files to Be Ignored Always.
正解:B、D
質問 # 29
What unauthorized change can CyberArk EPM Ransomware Protection prevent?
- A. Website Data
- B. Certificates in the Certificate Store
- C. Local Administrator Passwords
- D. Windows Registry Keys
正解:B
質問 # 30
Select the default threat intelligence source that requires additional licensing.
- A. CyberArk Application Risk Analysis Service
- B. Palo Alto WildFire
- C. VirusTotal
- D. NSRL
正解:B
質問 # 31
Where can you view CyberArk EPM Credential Lures events?
- A. Events Management
- B. Policy Audit
- C. Application Catalog
- D. Threat Protection Inbox
正解:D
質問 # 32
On the Default Policies page, what are the names of policies that can be set as soon as EPM is deployed?
- A. Privilege Management, Application Control, Threat analysis
- B. Privilege Management, Threat Protection, Application Escalation Control
- C. Privilege Escalation, Privilege Management, Application Management
- D. Privilege Management, Privilege Threat Protection, Local Privileged Accounts Management
正解:D
質問 # 33
CyberArk's Privilege Threat Protection policies are available for which Operating Systems? (Choose two.)
- A. MacOS
- B. Windows Workstations
- C. Windows Servers
- D. Linux
正解:B、C
質問 # 34
What type of user can be created from the Threat Deception LSASS Credential Lures feature?
- A. A local administrator user
- B. A standard user
- C. A domain admin user
- D. It does not create any users
正解:B
質問 # 35
An EPM Administrator would like to enable a Threat Protection policy, however, the policy protects an application that is not installed on all endpoints.
What should the EPM Administrator do?
- A. Do not enable the Threat Protection policy.
- B. Enable the Threat Protection policy and configure the Policy Targets.
- C. Enable the Threat Protection policy only in Detect mode.
- D. Split up the endpoints in to separate Sets and enable Threat Protection for only one of the Sets.
正解:D
質問 # 36
What is required to configure SAML authentication on EPM?
- A. Signed Authentication Request
- B. Encrypted Assertion
- C. Signed SAML Response
- D. OAuth token
正解:C
質問 # 37
If you want to diagnose agent EPM agent connectivity issues, what is the agent executable that can be used from the command line?
- A. db_agent.exe
- B. vault_agent.exe
- C. epm_agent.exe
- D. vf_agent.exe
正解:C
質問 # 38
A company is looking to manage their Windows Servers and Desktops with CyberArk EPM. Management would like to define different default policies between the Windows Servers and Windows Desktops.
What should the EPM Administrator do?
- A. CyberArk does not recommend installing EPM Agents on Windows Servers.
- B. In the Default Policies, exclude either the Windows Servers or the Windows Desktops.
- C. Create a separate Set for Windows Servers and Windows Desktops.
- D. Create Advanced Policies to apply different policies between Windows Servers and Windows Desktops.
正解:D
質問 # 39
Which EPM reporting tool provides a comprehensive view of threat detection activity?
- A. Threat Detection Events
- B. Detected Threats
- C. Threat Detection Dashboard
- D. McAfee ePO Reports
正解:C
質問 # 40
Where would an EPM admin configure an application policy that depends on a script returning true for an end user's machine being connected to an open (no password protection) Wi-Fi?
- A. Default policies - Check if network access is secure
- B. Advanced Policy - Options: Conditional enforcement - Apply Policy according to Script execution result
- C. Advanced Policy - Application Control - Check Wi-Fi security
- D. Advanced Policy - Access - Specify permissions to be set for Wi-Fi network security
正解:B
質問 # 41
Which user or group will not be removed as part of CyberArk EPM's Remove Local Administrators feature?
- A. Domain Users
- B. Built-in Local Administrator
- C. Admin Users
- D. Power Users
正解:B
質問 # 42
After a clean installation of the EPM agent, the local administrator password is not being changed on macOS and the old password can still be used to log in.
What is a possible cause?
- A. Secure Token on macOS endpoint is not enabled.
- B. EPM agent is not able to connect to the EPM server.
- C. After installation, Full Disk Access for the macOS agent to support EPM policies was not approved.
- D. Endpoint password policy is too restrictive.
正解:A
質問 # 43
Match the Trusted Source to its correct definition:
正解:
解説:

質問 # 44
Which of the following application options can be used when defining trusted sources?
- A. Publisher, Product, Size, URL
- B. Publisher, Name, Size, URI
- C. Product, Publisher, User/Group, Installation Package
- D. Product, URL, Machine, Package
正解:C
質問 # 45
When blocking applications, what is the recommended practice regarding the end-user UI?
- A. Show a block prompt for blocked applications.
- B. Show no prompts for blocked applications.
- C. Hide the CyberArk EPM Agent icon in the system tray.
- D. Enable the Default Deny policy.
正解:A
質問 # 46
What are the predefined application groups?
- A. Block Only
- B. Run as Administrator, Run as Developer, Block
- C. Elevate, Allow, Block, Developer Applications
- D. Developer group, Administrator group
正解:C
質問 # 47
What are valid policy options for JIT and elevation policies?
- A. Grant temporary access for, Policy name, Terminate administrative processes when the policy expires, Collect audit information
- B. Grant administrative access, Policy name, Log off to apply policy, Collect policy violation information
- C. Grant temporary access for all users, Policy name, Restart administrative processes in admin approval mode, Collect audit information
- D. Terminate administrative services, Grant policy access for, Policy name, Collect audit reports
正解:B
質問 # 48
An EPM Administrator is looking to enable the Threat Deception feature, under what section should the EPM Administrator go to enable this feature?
- A. Policies
- B. Threat Protection Inbox
- C. Policy Audit
- D. Threat Intelligence
正解:A
質問 # 49
When enabling Threat Protection policies, what should an EPM Administrator consider? (Choose two.)
- A. Threat Protection features are not available in all regions.
- B. Threat Protection policies requires an additional agent to be installed.
- C. Certain Threat Protection policies apply for specific applications not found on all machines
- D. Some Threat Protection policies are applicable only for Windows Servers as opposed to Workstations.
正解:C、D
質問 # 50
An end user is experiencing performance issues on their device after the EPM Agent had been installed on their machine. What should the EPM Administrator do first to help resolve the issue?
- A. Uninstall or disable any anti-virus software prohibiting the EPM Agent functionalities.
- B. Verify any 3rd party security solutions have been added to EPM's Files To Be Ignored Always configuration and CyberArk EPM has also been excluded from the 3rd party security solutions.
- C. Enable the Default Policy's Privilege Management Control, Unhandled Privileged Applications in Elevate mode.
- D. Rerun the agent installation on the user's machine to repair the installation.
正解:A
質問 # 51
......
EPM-DEF試験問題集でPDF合格保証 成功は正確かつ更新された問題:https://www.passtest.jp/CyberArk/EPM-DEF-shiken.html
EPM-DEF問題集-[最新2023]CyberArk試験問題集を掴み取れ:https://drive.google.com/open?id=1TTyszQfHVV-uqbE-S8JTZeSpRpgAJFIv