VMware
Carbon Black Cloud Technical Specialist
250-602
Get certified with the 250-602 exam focusing on Carbon Black Cloud solutions.
200 questions
0 views
Free
Questions 91–100 of 200
Which service provides endpoint detection and response in VMware Carbon Black Cloud?
-
A
Endpoint Standard
-
B
Threat Intelligence
-
C
Cloud Workload Security
-
D
Log Insight
Explanation
Endpoint Standard offers detection and response directly on endpoints, while the others serve different functions.
You are configuring a policy in VMware Carbon Black. What should you prioritize for high-risk environments?
-
A
Maximal logging level
-
B
Minimal alerting configurations
-
C
User discretion on installations
-
D
Predefined strict security settings
Explanation
Strict security settings reduce the attack surface in high-risk environments, unlike the other options.
What happens when a machine goes offline in the Carbon Black environment?
-
A
No data collection occurs
-
B
All actions are permanently lost
-
C
Real-time monitoring continues
-
D
Stored data syncs upon reconnection
Explanation
Stored data is retained and synced once the machine reconnects, while the other options misrepresent the system's function.
Which service in VMware Carbon Black Cloud helps assess endpoint vulnerability?
-
A
Threat Intelligence
-
B
Vulnerability Management
-
C
EDR
-
D
Live Response
Explanation
Vulnerability Management identifies and assesses endpoint vulnerabilities; the others focus on threat detection or response.
A company needs to investigate an incident from last week. What action should they take?
-
A
Use Live Response
-
B
Review reports
-
C
Initiate containment
-
D
Analyze current threats
Explanation
Reviewing reports provides insights into past incidents, while the others pertain to current or future actions.
You are configuring policies in Carbon Black Cloud. Which setting applies to email notifications?
-
A
Endpoint Settings
-
B
Incident Response
-
C
Notification Settings
-
D
User Management
Explanation
Notification Settings specifically handle email configurations, while the others deal with different functionalities.
Which service within VMware Carbon Black Cloud provides endpoint protection?
-
A
Endpoint Standard
-
B
Management Console
-
C
Threat Remediation
-
D
Cloud Workload Protection
Explanation
Endpoint Standard specializes in providing endpoint protection, while the others focus on management or specific areas of threat response.
A company needs to ensure compliance with local data protection regulations. What feature can help?
-
A
Automated Remediation
-
B
Activity Monitoring
-
C
Data Loss Prevention
-
D
Threat Intelligence
Explanation
Data Loss Prevention assists in maintaining compliance by preventing unauthorized data access or leaks.
What happens when a blacklist rule is violated in VMware Carbon Black Cloud?
-
A
Action is taken immediately
-
B
An alert is triggered
-
C
No impact is felt
-
D
System performance decreases
Explanation
When a blacklist rule is violated, immediate action is triggered to stop the threat, unlike alerts that merely signal the issue.
Which service allows for automated incident response in VMware Carbon Black?
-
A
Detection and Response
-
B
File Integrity Monitoring
-
C
Threat Intelligence
-
D
Application Control
Explanation
Detection and Response provides automation for incident handling, while the others serve different purposes.