Which service does VMware Carbon Black Application Control use for policy enforcement?
AFile Integrity Monitoring
BEndpoint Detection and Response
CApplication Control Policies
DAccess Control Lists
Explanation
Application Control Policies enforce policies at the endpoint while others do not.
Q32
A company needs to restrict executable files from external sources. What should they implement?
AUser Account Control
BApplication Whitelisting
CFirewall Rules
DNetwork Segmentation
Explanation
Application Whitelisting allows only approved executables.
Q33
You are configuring integration with a SIEM tool. What must be enabled first?
AAPI Access
BLog Data Control
CUser Roles
DIncident Response
Explanation
API Access must be enabled for SIEM tool integration, while other options are unrelated.
Q34
Which service is responsible for maintaining the policy enforcement in VMware Carbon Black Application Control?
APolicy Service
BEvent Service
CThreat Intelligence
DReporting Service
Explanation
The Policy Service ensures your enforcement policies are applied; the other options focus on different functionalities.
Q35
A company needs to allow specific software while preventing all other applications. What should they configure in VMware Carbon Black Application Control?
ADeny All Policy
BAllow All Policy
CPolicy Exceptions
DWhitelist Configuration
Explanation
A Whitelist Configuration allows specified applications while blocking others; the Deny and Allow options are not specific enough.
Q36
You are configuring the Application Control's file integrity checking features. What happens when a known good file's hash is updated?
AIt causes a policy violation.
BThe file will be automatically blocked.
CThe file is still allowed.
DIt triggers a real-time threat alert.
Explanation
The file is allowed if its hash is previously recognized; other options incorrectly suggest actions based on perceptive changes.
Q37
Which service in VMware Carbon Black manages application control policies?
AApplication Control
BEndpoint Protection
CDevice Control
DThreat Intelligence
Explanation
Application Control is specifically designed for managing policies, while the others serve different security functions.
Q38
A company needs to allow a specific application but restrict all others; which policy should they configure in Carbon Black?
ABlock Policy
BAllow Policy
CAudit Policy
DDefault Policy
Explanation
An Allow Policy permits specified applications while blocking others, unlike the others that serve broader purposes.
Q39
What happens when an unapproved application attempts to run on a system protected by Carbon Black?
AIt automatically uninstalls
BIt is blocked according to policy
CIt runs with warnings
DNothing happens; it's ignored
Explanation
Carbon Black blocks any unapproved applications based on set policies to ensure security.
Q40
Which service in VMware Carbon Black provides real-time visibility into endpoint activity?
AEvent Monitoring
BThreat Analysis
CApplication Control
DIncident Response
Explanation
Event Monitoring provides real-time visibility into endpoint activity, while others focus on specific aspects of security.