500-275 Exam Questions
45 real 500-275 exam questions with expert-verified answers and explanations. Page 1 of 1.
- Question #1
Custom whitelists are used for which purpose?
- Question #2
How does application blocking enhance security?
- Question #3
Which set of actions would you take to create a simple custom detection?
- Question #4
Advanced custom signatures are written using which type of syntax?
- Question #10
How many days' worth of data do the widgets on the dashboard page display?
- Question #11
Which type of activity is shown in the Device Trajectory page?
- Question #12
Which statement is true about the Device Trajectory feature?
- Question #13
When you are viewing information about a computer, what is displayed?
- Question #14
How can customers feed new intelligence such as files and hashes to FireAMP?
- Question #15
What is the first system that is infected with a particular malware called?
- Question #16
Which information does the File Trajectory feature show?
- Question #17
Which action can you take from the Detections/Quarantine screen?
- Question #18
FireAMP reports can be distributed by which mechanism?
- Question #19
In a FireAMP Private Cloud installation, deployed connectors communicate with which server?
- Question #20
For connector-to-FireAMP Private Cloud communication, which port number is used for lower- overhead communication?
- Question #21
In a FireAMP Private Cloud installation, an administrator uses which server to configure the FireAMP Private Cloud properties?
- Question #22
In a FireAMP Private Cloud installation, which server does an administrator use to manage connector policy and view events?
- Question #23
A default FireAMP Private Cloud installation can accommodate how many connectors over which period of time?
- Question #24
Which option represents a configuration step on first use?
- Question #25
Which option describes a requirement for using Remote File Fetch?
- Question #26
Where is the File Fetch context menu option available?
- Question #27
Where does an administrator go to get a copy of a fetched file?
- Question #28
The FireAMP connector monitors the system for which type of activity?
- Question #29
Which disposition can be returned in response to a malware cloud lookup?
- Question #30
The FireAMP Mobile endpoint connector currently supports which mobile OS device?
- Question #31
If a file's SHA-256 hash is sent to the cloud, but the cloud has never seen the hash before, which disposition is returned?
- Question #32
Which statement describes an advantage of the FireAMP product?
- Question #33
Which feature allows retrospective detection?
- Question #34
Which statement describes an advantage of cloud-based detection?
- Question #35
Which option is a detection technology that is used by FireAMP?
- Question #38
The Accounts menu contains items that are related to FireAMP console accounts. Which menu allows you to set the default group policy?
- Question #39
Which statement about two-step authentication is true?
- Question #40
Which of these can you use for two-step authentication?
- Question #41
When a user initiates a scan, which types of scan are available as options?
- Question #42
Which tool can you use to query the history.db file?
- Question #43
Which pair represents equivalent processes whose names differ, depending on the connector version that you are running?
- Question #44
Which FireAMP capability can tell you how malware has spread in a network?
- Question #46
Incident responders use which policy mode for outbreak control?
- Question #47
Which question should be in your predeployment checklist?
- Question #48
Which hosts merit special consideration for crafting a policy?
- Question #49
From the Deployment screen, you can deploy agents via which mechanism?
- Question #50
What is the default command-line switch configuration, if you run a connector installation with no parameters?
- Question #53
The Update Window allows you to perform which action?
- Question #54
The FireAMP connector supports which proxy type?
- Question #55
What is a valid data source for DFC Windows connector policy configuration?