NSK101 Exam Questions
99 real NSK101 exam questions with expert-verified answers and explanations. Page 2 of 2.
- Question #51Implementing and Managing Cloud Security Policies
When using an out-of-band API connection with your sanctioned cloud service, what are two capabilities available to the administrator? (Choose two.)
out-of-band APIsanctioned appsquarantinesensitive content discovery - Question #52Network Configuration and Traffic Steering
You want to block access to sites that use self-signed certificates. Which statement is true in this scenario?
SSL inspectionself-signed certificatessteering configurationcertificate settings - Question #53Netskope Security Service Edge (SSE) Overview and Deployment
What are two characteristics of Netskope's Private Access Solution? (Choose two.)
ZTNAprivate accessNPAprivate applications - Question #54Real-time Threat Protection and Incident Response
You are required to mitigate malicious scripts from being downloaded into your corporate devices every time a user goes to a website. Users need to access websites from a variety o...
malware protectionRBIweb filteringthreat mitigation - Question #55Implementing and Managing Cloud Security Policies
A customer asks you to create several real-time policies. Policy A generates alerts when any user downloads, uploads, or shares files on a cloud storage application. Policy B block...
policy orderingreal-time protection policiescloud storagepolicy precedence - Question #56Platform Troubleshooting and Optimization
A company is attempting to steer traffic to Netskope using GRE tunnels. They notice that after the initial configuration, users cannot access external websites from their browsers....
GRE tunnelstraffic steeringfirewall blockingtunnel misconfiguration - Question #57Netskope Security Service Edge (SSE) Overview and Deployment
What are two fundamental differences between the inline and API implementation of the Netskope platform? (Choose two.)
inline deploymentAPI deploymentsanctioned appsunsanctioned apps - Question #58Monitoring, Reporting, and Audit Capabilities
Your company asks you to obtain a detailed list of all events from the last 24 hours for a specific user. In this scenario, what are two methods to accomplish this task? (Choose tw...
Skope ITREST APIevent exportuser activity reporting - Question #59Implementing and Managing Cloud Security Policies
Why would you want to define an App Instance?
app instancesinstance awarenesspersonal vs enterpriseGoogle Drive - Question #60Network Configuration and Traffic Steering
You want to enable Netskope to gain visibility into your users' cloud application activities in an inline mode. In this scenario, which two deployment methods would match your inli...
forward proxyreverse proxyinline modetraffic visibility - Question #61Netskope Security Service Edge (SSE) Overview and Deployment
As an administrator, you need to configure the Netskope Admin UI to be accessible by specific IP addresses and to display a custom message after the admin users have been authentic...
IP allow listadmin UI securityuser notification templateadmin access control - Question #62Monitoring, Reporting, and Audit Capabilities
As an administrator, you are asked to monitor the status of your IPsec and GRE tunnels. In the Netskope Admin UI, which two sections would you use in this scenario? (Choose two.)
IPsec tunnelsGRE tunnelsDEMsteering configuration monitoring - Question #63Monitoring, Reporting, and Audit Capabilities
You need to locate events for specific activities such as "edit" or "login successful" in a cloud application. In which SkopeIT Events & Alerts page would this information be found...
Skope ITapplication eventsactivity loggingSkopeIT navigation - Question #64Advanced Data Loss Prevention (DLP) and Compliance
A customer has created a CASB API-enabled Protection policy to detect files containing sensitive data that are shared outside of their organization. Referring to the exhibit, which...
CASB API protectionexternal sharingDLP policyfile sharing visibility - Question #65Implementing and Managing Cloud Security Policies
Which statement is correct about Netskope's Instance Awareness?
instance awarenessMicrosoft 365corporate tenantapp differentiation - Question #66Platform Troubleshooting and Optimization
You added a new private app definition and created a Real-time Protection policy to allow access for all users. You have a user who reports that they are unable to access the appli...
ZTNA troubleshootingprivate app accessclient statuspolicy verification - Question #67Network Configuration and Traffic Steering
Referring to the exhibit, what are two recommended steps to be set on the perimeter device to monitor IPsec tunnels to a Netskope data plane? (Choose two.)
IPsec monitoringDead Peer Detectionprobe IPperimeter device configuration - Question #68Implementing and Managing Cloud Security Policies
Referring to the exhibit. What are two use cases where the parameter shown in the exhibit is required? (Choose two.)
app instancesfile transfer policysanctioned vs personal appsDLP policy scope - Question #69Implementing and Managing Cloud Security Policies
A user has the Netskope Client enabled with the correct steering configuration applied. The exhibit shows an inline policy that has a predefined webmail category blocked. However t...
URL categorieswebmailexplicit proxytraffic steering - Question #70Advanced Data Loss Prevention (DLP) and Compliance
A Netskope administrator wants to create a policy to quarantine files based on sensitive content. In this scenario, which variable must be included in the policy to achieve this go...
DLP profilequarantine policysensitive contentpolicy configuration - Question #71Network Configuration and Traffic Steering
You are attempting to allow access to an application using NPA. Private Apps steering is already enabled for all users. In this scenario, which two actions are required to accompli...
NPAPrivate Accessreal-time protection policysteering configuration - Question #72Monitoring, Reporting, and Audit Capabilities
Your organization has recently implemented Netskope Private Access. During an investigation, your security team has asked you to provide a list of all hosts including domains and I...
NPASkopeITnetwork eventsaudit logging - Question #73Implementing and Managing Cloud Security Policies
Referring to the exhibit, you have a user reporting that a blocked website is needed for legitimate business reasons. Upon review, you determine that the user has been blocked by t...
custom URL listscustom categoriespolicy exceptionsblock policy override - Question #74Netskope Security Service Edge (SSE) Overview and Deployment
Which two capabilities are part of Netskope's Adaptive Zero Trust Data Protection? (Choose two.)
Zero Trustadaptive policiescontextual riskdata protection - Question #75Netskope Security Service Edge (SSE) Overview and Deployment
What are two supported ways to provision users to your customer's Netskope tenant? (Choose two.)
user provisioningAD ConnectorSCIMidentity management - Question #76Monitoring, Reporting, and Audit Capabilities
All users are going through Netskope's Next Gen SWG. Your CISO requests a monthly report of all users who are accessing cloud applications with a "Low" or a "Poor" CCL, where the a...
Advanced AnalyticsCCLscheduled reportscloud app visibility - Question #77Network Configuration and Traffic Steering
Users are connecting to sanctioned cloud applications from public computers, such as from a hotel business center. Which traffic steering method would work in this scenario?
reverse proxyagentless accesstraffic steeringpublic endpoint - Question #78Network Configuration and Traffic Steering
You determine that a business application uses non-standard HTTPS ports. You want to steer all HTTPS traffic for this application and have visibility and control over user activiti...
non-standard portssteering configurationHTTPStraffic steering - Question #79Netskope Security Service Edge (SSE) Overview and Deployment
Which Netskope platform component uses NewEdge Traffic Management for traffic steering?
NewEdgeNetskope Clienttraffic managementdata plane - Question #80Implementing and Managing Cloud Security Policies
How do you protect your data at rest intellectual property (IP), such as source code or product designs, stored in Microsoft 365 SharePoint?
API-enabled ProtectionSharePointdata at restMicrosoft 365 - Question #81Monitoring, Reporting, and Audit Capabilities
You want to determine which NewEdge data planes that your remote users have been recently using. Which area of the Netskope Tenant UI would provide this information?
NewEdgeDigital Experience Managementdata planesclient steering - Question #82Network Configuration and Traffic Steering
How does a cloud security solution achieve visibility into TLS/SSL-protected Web traffic?
TLS inspectionSSL decryptioncertificate substitutioninline proxy - Question #83Advanced Data Loss Prevention (DLP) and Compliance
You want to see the actual data that caused the policy violation within a DLP Incident view. In this scenario, which profile must be set up?
DLP incidentsforensics profilepolicy violationscontent visibility - Question #84Platform Troubleshooting and Optimization
What are two correct methods to gather logs from the Netskope Client? (Choose two.)
client logslog collectiontroubleshootingNetskope Client - Question #85Advanced Data Loss Prevention (DLP) and Compliance
Which compliance standard should a company consider if both controllers and processors have legal entities in the EU?
GDPRcompliance standardsEU data protectiondata controllers - Question #86Netskope Security Service Edge (SSE) Overview and Deployment
A new customer is concerned about performance, especially with respect to Microsoft 365. They have offices in 20 countries around the world and their workforce is mostly mobile. In...
NewEdgeMicrosoft 365global infrastructureperformance - Question #87Implementing and Managing Cloud Security Policies
Your company has implemented Netskope's Cloud Firewall and requires that all FTP connections are blocked regardless of the ports being used. Which two statements correctly identify...
Cloud FirewallFTP blockingreal-time protectionfirewall policy - Question #88Network Configuration and Traffic Steering
When accessing an encrypted website (HTTPS), what is a reason why you might receive a "certificate not trusted" browser message?
SSL certificatesself-signed certificateTLSbrowser trust - Question #89Network Configuration and Traffic Steering
The Netskope deployment for your organization is deployed in CASB-only mode. You want to view dropbox.com traffic but do not see it when using SkopeIT. In this scenario, what are t...
CASB modecertificate pinningtraffic steeringSkopeIT visibility - Question #90Monitoring, Reporting, and Audit Capabilities
You are required to present a view of all upload activities completed by users tunneled from the Los Angeles office to cloud storage applications. Which two basic filters would you...
SkopeIT filtersupload activityaccess methodcloud storage monitoring - Question #91Netskope Security Service Edge (SSE) Overview and Deployment
What information is displayed in an application's Cloud Confidence Index (CCI) page? (Choose two.)
Cloud Confidence IndexCCIGDPR readinessapplication assessment - Question #92Advanced Data Loss Prevention (DLP) and Compliance
An administrator has created a DLP rule to search for text within documents that match a specific pattern. After creating a Real-time Protection Policy to make use of this DLP rule...
DLP rulesfalse positivesforensicsreal-time protection policy - Question #93Platform Troubleshooting and Optimization
Your organization has implemented Netskope Private Access (NPA) for all users. Users from the European region are reporting that they are unable to access many of their application...
NPA publisherspublisher statusprivate access troubleshootingconnectivity verification - Question #94Netskope Security Service Edge (SSE) Overview and Deployment
Which three statements about Netskope Private Access Publishers are correct? (Choose three.)
NPA publisherspublisher deploymentoutbound connectionsREST API automation - Question #95Implementing and Managing Cloud Security Policies
A customer is considering the cloud shared responsibility model. In this scenario, which two criteria become the customer's responsibility? (Choose two.)
shared responsibility modelaccess controldata leakage preventioncloud security - Question #96Implementing and Managing Cloud Security Policies
You are required to create a policy that will notify and allow users to log into their personal Google Drive instance. Which two policy components must be configured to enforce thi...
steering exceptionuser alertpersonal instance policypolicy components - Question #97Network Configuration and Traffic Steering
In which two scenarios would you use SD-WAN technology? (Choose two.)
SD-WANMPLS replacementWAN optimizationnetwork performance - Question #98Monitoring, Reporting, and Audit Capabilities
Your company started deploying the latest version of the Netskope Client and you want to track the progress and device count using Netskope. Which two statements are correct in thi...
Netskope Client deploymentdevice managementDigital Experience Managementdeployment tracking - Question #99Netskope Security Service Edge (SSE) Overview and Deployment
What are two uses for deploying a Netskope Virtual Appliance? (Choose two.)
virtual appliancelog parserNPA endpointcloud app discovery