Winter Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: v4s65

250-441 Exam Dumps - Administration of Symantec Advanced Threat Protection 3.0

Go to page:
Question # 9

Which level of privilege corresponds to each ATP account type?

Match the correct account type to the corresponding privileges.

Full Access
Question # 10

Which two user roles allow an Incident Responder to blacklist or whitelist files using the ATP manager?

(Choose two.)

A.

Administrator

B.

Controller

C.

User

D.

Incident Responder

E.

Root

Full Access
Question # 11

Which prerequisite is necessary to extend the ATP: Network solution service in order to correlate email

detections?

A.

Email Security.cloud

B.

Web security.cloud

C.

Skeptic

D.

Symantec Messaging Gateway

Full Access
Question # 12

What is a benefit of using Microsoft SQL as the Symantec Endpoint Protection Manager (SEPM) database in regard to ATP?

A.

It allows for Microsoft Incident Responders to assist in remediation

B.

ATP can access the database using a log collector on the SEPM host

C.

It allows for Symantec Incident Responders to assist in remediation

D.

ATP can access the database without any special host system requirements

Full Access
Question # 13

An Incident Responder wants to investigate whether msscrt.pdf resides on any systems.

Which search query and type should the responder run?

A.

Database search filename “msscrt.pdf”

B.

Database search msscrt.pdf

C.

Endpoint search filename like msscrt.pdf

D.

Endpoint search filename =“msscrt.pdf”

Full Access
Question # 14

Which stage of an Advanced Persistent Threat (APT) attack does social engineering occur?

A.

Capture

B.

Incursion

C.

Discovery

D.

Exfiltration

Full Access
Go to page: