A company needs to prevent unauthorized application installations. What feature in Symantec Endpoint Protection should they use?
AApplication Control
BNetwork Threat Protection
CHost Integrity
DBehavioral Protection
Explanation
Application Control allows administrators to manage and restrict applications, ensuring only authorized software is installed.
Q12
You are configuring VPN settings for remote clients in Symantec Endpoint Protection. What happens when 'Split Tunneling' is enabled?
AAll traffic goes through the VPN
BOnly specific traffic uses the VPN
CVPN access is disabled completely
DIncreased latency for all traffic
Explanation
Split Tunneling permits specific traffic through the VPN while other traffic uses the local network.
Q13
Which service allows Symantec Endpoint Protection to manage policies and update definitions?
ASymantec Endpoint Protection Manager
BClient Management Service
CNetwork Threat Protection
DIntrusion Prevention Service
Explanation
The Symantec Endpoint Protection Manager is responsible for managing policies and updates, while the other services focus on specific protection functions.
Q14
A company needs to deploy an incident response plan for its endpoints. What should be the FIRST step in this process?
ADevelop endpoint backup procedures
BIdentify critical assets and risks
CTrain employees on security awareness
DInstall antivirus software on endpoints
Explanation
Identifying assets and risks is crucial to effectively tailor the incident response plan.
Q15
You are configuring a new policy in Symantec Endpoint Protection. What happens when you enable the 'Client Management’ option?
AClients ignore new policies
BClients can self-provision updates
CClients will download updates immediately
DClients receive notifications only
Explanation
Enabling 'Client Management' allows clients to download updates immediately, while other options describe incorrect client behaviors.
Q16
Which service is responsible for enforcing security policies in SEP?
ASymantec Endpoint Protection Manager
BSymantec LiveUpdate
CEndpoint Protection Client
DSymantec Notification Service
Explanation
The Symantec Endpoint Protection Manager enforces security policies, while the other services perform different functions.
Q17
A company needs to ensure real-time protection against various types of malware. Which feature of SEP should they enable?
AFirewall only
BAntivirus and Antispyware
CASG only
DIntrusion Prevention only
Explanation
Antivirus and Antispyware provides comprehensive real-time malware protection, while the others address specific threats.
Q18
What happens when a client falls out of communication with the SEP Management Server for an extended time?
AClient remains fully updated
BClient disables all security features
CClient operates as standalone with policies
DClient deletes all prior logs
Explanation
The client operates with existing policies, but will not receive updates until communication resumes.
Q19
Which service must be enabled for full protection against zero-day threats?
ASonar technology
BFirewall service
CApplication control
DNetwork threat protection
Explanation
Sonar technology is specifically designed for detecting zero-day threats, while the other services address different aspects of security.
Q20
A company needs to deploy Symantec Endpoint Protection in a configure-on-attack scenario, which mode should be used?
APassive mode
BEncapsulated mode
CSonic mode
DRuntime mode
Explanation
Encapsulated mode allows SEP to respond to attacks persistently, making it suitable for configure-on-attack scenarios, whereas other modes don't offer this capability.