[Feb 17, 2022] Fully Updated Dumps PDF - Latest 250-550 Exam Questions and Answers [Q31-Q54]

Share

[Feb 17, 2022] Fully Updated Dumps PDF - Latest 250-550 Exam Questions and Answers

100% Free 250-550 Exam Dumps to Pass Exam Easily from TestPDF


Symantec 250-550 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Describe the tools and techniques included in SES to adapt security policies based upon threat detections
  • Describe the steps that can be taken to remediate threats locally on an endpoint
Topic 2
  • Describe the network requirements needed for connecting endpoints to the cloud management platform
  • Describe how to utilize console data to identify and endpoints security status
Topic 3
  • Describe false positives, their impact, and how SES can be used to mitigate them
  • Describe how SES can be used to protect endpoints against zero-day attacks
Topic 4
  • Describe how to use the SES management console to configure administrative reports
  • Describe SES content update types and how they are distributed to endpoints
Topic 5
  • Describe the SES policy and device groups and how they are used
  • Describe the various types of threats that threaten endpoint devices
Topic 6
  • Describe the various methods SES uses to identify unmanaged endpoints
  • Describe various Memory Exploit Mitigation techniques and how SES protects against them
Topic 7
  • Describe the SES system requirements and supported operating systems
  • Describe the account access and authentication methods available in SES

 

NEW QUESTION 31
What characterizes an emerging threat in comparison to traditional threat?

  • A. Emerging threats are undetectable by signature based engines.
  • B. Emerging threats are more sophisticated than traditional threats.
  • C. Emerging threats use new techniques and 0-day vulnerability to propagate.
  • D. Emerging threats requires artificial intelligence to be detected.

Answer: C

 

NEW QUESTION 32
What does an end-user receive when an administrator utilizes the Invite User feature to distribute the SES client?

  • A. An email with link to register on the ICDm user portal
  • B. An email with the SES_setup.zip file attached
  • C. An email with a link to directly download the SES client
  • D. An email with a link to a KB article explaining how to install the SES Agent

Answer: A

 

NEW QUESTION 33
Wh.ch Firewall rule components should an administrator configure to block facebook.com use during business hours?

  • A. Action, Hosts(s), and Schedule
  • B. Action, Application, and Schedule
  • C. Application, Host(s), and Network Service
  • D. Host(s), Network Interface, and Network Service

Answer: A

 

NEW QUESTION 34
How long does a blacklist task remain in the My Tasks view after its automatic creation?

  • A. 90 Days
  • B. 180 Days
  • C. 60 Days
  • D. 30 Days

Answer: D

 

NEW QUESTION 35
An administrator is evaluating an organization's computers for an upcoming SES deployment. Which computer meets the pre-requisites for the SES client?

  • A. A computer running Mac OS X 10.8 with 500 MB of disk space, 4 GB of RAM, and an Intel Core 2 Duo 64-bit processor
  • B. A computer running Windows 10 with 400 MB of disk space, 2 GB of RAM, and a 2.4 GHz Intel Pentium 4 processor
  • C. A computer running Mac OS X 10.14 with 400 MB of disk space, 4 GB of RAM, and an Intel Core 2 Duo 64-bit processor
  • D. A computer running Windows 8 with 380 MB of disk space, 2 GB of RAM, and a 2.8 GHz Intel Pentium 4 processor

Answer: B

 

NEW QUESTION 36
An endpoint is offline, and the administrator issues a scan command. What happens to the endpoint when it restarts, if it lacks connectivity?

  • A. The system scans after the content update is downloaded.
  • B. The system downloads the content without scanning.
  • C. The system starts without scanning.
  • D. The system is scanning when started.

Answer: B

 

NEW QUESTION 37
Which SEPM-generated element is required for an administrator to complete the enrollment of SEPM to the cloud console?

  • A. SEPM password
  • B. SQL password
  • C. Token
  • D. Certificate key pair

Answer: C

 

NEW QUESTION 38
Which Endpoint > Setting should an administrator utilize to locate unmanaged endpoints on a network subnet?

  • A. Device Discovery
  • B. Discover Endpoints
  • C. Endpoint Enrollment
  • D. Discover and Deploy

Answer: B

 

NEW QUESTION 39
In which phase of MITRE framework would attackers exploit faults in software to directly tamper with system memory?

  • A. Discovery
  • B. Execution
  • C. Defense Evasion
  • D. Exfiltration

Answer: C

 

NEW QUESTION 40
After editing and saving a policy, an administrator is prompted with the option to apply the edited policy to any assigned device groups.
What happens to the new version of the policy if the administrator declines the option to apply it?

  • A. An unassigned version of the policy is created
  • B. The new version of the policy is deleted
  • C. The policy display is returned to edit mode
  • D. The new version of the policy is added to the "in progress" list

Answer: C

 

NEW QUESTION 41
What should an administrator know regarding the differences between a Domain and a Tenant in ICDm?

  • A. A tenant can contain multiple domains
  • B. Each customer can have one tenant and many domains
  • C. A domain can contain multiple tenants
  • D. Each customer can have one domain and many tenant

Answer: A

 

NEW QUESTION 42
Which two (2) steps should an administrator take to guard against re-occurring threats? (Select two)

  • A. Use Power Eraser to clean endpoint Windows registries
  • B. Verify that all endpoints receive scheduled Live-Update content
  • C. Add endpoints to a high security group and assign a restrictive Antimalware policy to the group
  • D. Confirm that daily active and weekly full scans take place on all endpoints
  • E. Quarantine affected endpoints

Answer: A,E

 

NEW QUESTION 43
Which antimalware intensity level is defined by the following: "Blocks files that are most certainly bad or potentially bad files. Results in a comparable number of false positives and false negatives."

  • A. Level 1
  • B. Level 6
  • C. Level 2
  • D. Level 5

Answer: B

 

NEW QUESTION 44
What are the Exploit Mitigation security control's mitigation techniques designed to prevent?

  • A. Packed file execution
  • B. Rootkit downloads
  • C. File-less attacks
  • D. Misbehaving applications

Answer: B

 

NEW QUESTION 45
What is the primary issue pertaining to managing roaming users while utilizing an on-premise solution?

  • A. The endpoint fails to receive content update
  • B. The endpoint is absent of the management console
  • C. The endpoint is missing timely policy update
  • D. The endpoint is more exposed to threats

Answer: A

 

NEW QUESTION 46
Why would an administrator choose the Server-optimized installation option when creating an installation package?

  • A. To add the SES client's Optimize Memory setting to the default server installation.
  • B. To reduce the SES client's using resources that are required for other server-specific processes.
  • C. To limit the Intrusion Prevention policy to use server-only signatures.
  • D. To add the Server-optimized Firewall policy

Answer: C

 

NEW QUESTION 47
Which two (2) scan range options are available to an administrator for locating unmanaged endpoints? (Select two)

  • A. IP range within subnet
  • B. IP range within network
  • C. Entire Network
  • D. Entire Subnet
  • E. Subnet Range

Answer: B,E

 

NEW QUESTION 48
An administrator needs to create a new Report Template that will be used to track firewall activity. Which two (2) report template settings are optional? (Select 2)

  • A. Generation schedule
  • B. Time frame
  • C. Size restrictions
  • D. Output format
  • E. Email recipients

Answer: D,E

 

NEW QUESTION 49
Which statement best describes Artificial Intelligence?

  • A. A program that can predict when a task should be performed
  • B. A program that is autonomous and needs training to perform a task
  • C. A program that learns from experience and perform autonomous tasks
  • D. A program that automates tasks with a static set of instructions

Answer: D

 

NEW QUESTION 50
Which file property does SES utilize to search the VirusTotal website for suspicious file information?

  • A. File reputation
  • B. File size
  • C. File name
  • D. File hash

Answer: C

 

NEW QUESTION 51
Which SES advanced feature detects malware by consulting a training model composed of known good and known bad fries?

  • A. Advanced Machine Learning
  • B. Reputation
  • C. Artificial Intelligence
  • D. Signatures

Answer: A

 

NEW QUESTION 52
Files are blocked by hash in the blacklist policy.
Which algorithm is supported, in addition to MD5?

  • A. MD5 "Salted"
  • B. SHA2
  • C. SHA256
  • D. SHA256 "salted"

Answer: C

 

NEW QUESTION 53
An administrator selects the Discovered Items list in the ICDm to investigate a recent surge in suspicious file activity. What should an administrator do to display only high risk files?

  • A. Apply a list control
  • B. Apply a list filter
  • C. Apply a search modifier
  • D. Apply a search rule

Answer: D

 

NEW QUESTION 54
......

Free 250-550 Exam Questions 250-550 Actual Free Exam Questions: https://braindumps.testpdf.com/250-550-practice-test.html