Pass the Symantec Data Loss Prevention 250-438 Questions and answers with CertsForce

Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions
Questions # 11:

What is the correct order for data in motion when a customer has integrated their CloudSOC and DLP solutions?

Options:

A.

User > CloudSOC Gatelet > DLP Cloud Detection Service > Application


B.

User > Enforce > Application


C.

User > Enforce > CloudSOC > Application


D.

User > CloudSOC Gatelet > Enforce > Application


Expert Solution
Questions # 12:

Which service encrypts the message when using a Modify SMTP Message response rule?

Options:

A.

Network Monitor server


B.

SMTP Prevent


C.

Enforce server


D.

Encryption Gateway


Expert Solution
Questions # 13:

What should an incident responder select in the Enforce management console to remediate multiple incidents simultaneously?

Options:

A.

Smart response on the Incident page


B.

Automated Response on the Incident Snapshot page


C.

Smart response on an Incident List report


D.

Automated response on an Incident List report


Expert Solution
Questions # 14:

Which server target uses the “Automated Incident Remediation Tracking” feature in Symantec DLP?

Options:

A.

Exchange


B.

File System


C.

Lotus Notes


D.

SharePoint


Expert Solution
Questions # 15:

Which two detection technology options run on the DLP agent? (Choose two.)

Options:

A.

Optical Character Recognition (OCR)


B.

Described Content Matching (DCM)


C.

Directory Group Matching (DGM)


D.

Form Recognition


E.

Indexed Document Matching (IDM)


Expert Solution
Questions # 16:

When managing an Endpoint Discover scan, a DLP administrator notices some endpoint computers are NOT completing their scans.

When does the DLP agent stop scanning?

Options:

A.

When the agent sends a report within the “Scan Idle Timeout” period


B.

When the endpoint computer is rebooted and the agent is started


C.

When the agent is unable to send a status report within the “Scan Idle Timeout” period


D.

When the agent sends a report immediately after the “Scan Idle Timeout” period


Expert Solution
Questions # 17:

A company needs to implement Data Owner Exception so that incidents when employees send or receive their own personal information.

What detection method should the company use?

Options:

A.

Indexed Document Matching (IDM)


B.

Vector Machine Learning (VML)


C.

Exact data matching (EDM)


D.

Described Content matching (DCM)


Expert Solution
Questions # 18:

A DLP administrator is attempting to add a new Network Discover detection server from the Enforce management console. However, the only available options are Network Monitor and Endpoint servers.

What should the administrator do to make the Network Discover option available?

Options:

A.

Restart the Symantec DLP Controller service


B.

Apply a new software license file from the Enforce console


C.

Install a new Network Discover detection server


D.

Restart the Vontu Monitor Service


Expert Solution
Questions # 19:

What is the correct configuration for “BoxMonitor.Channels” that will allow the server to start as a Network Monitor server?

Options:

A.

Packet Capture, Span Port


B.

Packet Capture, Network Tap


C.

Packet Capture, Copy Rule


D.

Packet capture, Network Monitor


Expert Solution
Questions # 20:

Which option correctly describes the two-tier installation type for Symantec DLP?

Options:

A.

Install the Oracle database on the host, and install the Enforce server and a detection server on a second host.


B.

Install the Oracle database on a local physical host, and install the Enforce server and detection servers on virtual hosts in the Cloud.


C.

Install the Oracle database and a detection server in the same host, and install the Enforce server on a second host.


D.

Install the Oracle database and Enforce server on the same host, and install detection servers on separate hosts.


Expert Solution
Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions