A company needs to enforce a strict policy against unapproved applications in their environment. What is the best approach using VMware Carbon Black Application Control?
AAllow all applications
BEnforce a Block mode policy
CSchedule periodic audits
DImplement an Allow-List only
Explanation
Enforcing a Block mode policy prevents execution unless approved, while others are less effective.
Q12
What happens when an endpoint runs an application that is not listed in the allow-list without any exception?
AApplication runs normally
BEndpoint crashes immediately
CApplication execution is blocked
DUser permissions are revoked
Explanation
Applications not in the allow-list are blocked from execution; other options are inaccurate outcomes.
Q13
Which service provides insights into file integrity?
AFile Integrity Monitoring
BThreat Intelligence
CUser Behavior Analytics
DSystem Hardening
Explanation
File Integrity Monitoring tracks changes to critical files, others do not.
Q14
A company needs to manage application usage across endpoints securely. What should they consider?
AImplement whitelisting policies
BDisable all application access
CUse only default browser settings
DAllow user-installed software
Explanation
Implementing whitelisting ensures only authorized applications run.
Q15
You are configuring a policy. What happens if a process is not explicitly allowed?
AThe process is allowed by default
BThe process is blocked
CThe process is logged only
DIt requires user approval
Explanation
If a process isn’t explicitly allowed, it will be blocked.
Q16
Which service is primarily responsible for policy enforcement in Carbon Black Application Control?
APolicy Enforcement Service
BThreat Detection Service
CEvent Logging Service
DSystem Health Monitoring
Explanation
The Policy Enforcement Service enforces application controls, while others serve different roles.
Q17
A company needs to restrict the execution of unauthorized applications. What feature in Carbon Black Application Control will assist with this?
AApplication Whitelisting
BNetwork Monitoring
CVulnerability Scanning
DThreat Intelligence
Explanation
Application Whitelisting allows only approved applications to run, effectively restricting unauthorized ones.
Q18
You are configuring a new policy in Carbon Black Application Control. What happens when you set an application to 'Block' but have not defined a corresponding rule?
AThe application will be allowed.
BThe application will be blocked.
CThe rule will be ignored.
DAn error will occur.
Explanation
Without a defined rule, the application can exec, as no policy is enforced.
Q19
Which service in VMware Carbon Black helps ensure application integrity by verifying code signatures?
ACode Integrity Monitoring
BApplication Remediation
CThreat Detection Service
DSystem Audit Service
Explanation
Code Integrity Monitoring verifies code signatures; the others focus on different aspects.
Q20
A company needs to roll out a policy that blocks unauthorized applications by default while allowing specific exceptions. Which action should be taken?
ACreate the default block rule
BSet all applications to permitted
COnly allow signed applications
DDisable policy enforcement
Explanation
Creating a default block rule allows exceptions correctly by indicating what to deny.