VMware

Symantec Endpoint Protection 14.x Admin R2 Technical Specialist

250-605

Validate your skills in endpoint protection with the 250-605 exam.

198 questions 0 views Free
Start Mock Test Timed · Full-length · Scored

Questions 11–20 of 198

Q11

A company needs to prevent unauthorized application installations. What feature in Symantec Endpoint Protection should they use?

  • A Application Control
  • B Network Threat Protection
  • C Host Integrity
  • D Behavioral Protection
Explanation Application Control allows administrators to manage and restrict applications, ensuring only authorized software is installed.
Q12

You are configuring VPN settings for remote clients in Symantec Endpoint Protection. What happens when 'Split Tunneling' is enabled?

  • A All traffic goes through the VPN
  • B Only specific traffic uses the VPN
  • C VPN access is disabled completely
  • D Increased latency for all traffic
Explanation Split Tunneling permits specific traffic through the VPN while other traffic uses the local network.
Q13

Which service allows Symantec Endpoint Protection to manage policies and update definitions?

  • A Symantec Endpoint Protection Manager
  • B Client Management Service
  • C Network Threat Protection
  • D Intrusion Prevention Service
Explanation The Symantec Endpoint Protection Manager is responsible for managing policies and updates, while the other services focus on specific protection functions.
Q14

A company needs to deploy an incident response plan for its endpoints. What should be the FIRST step in this process?

  • A Develop endpoint backup procedures
  • B Identify critical assets and risks
  • C Train employees on security awareness
  • D Install antivirus software on endpoints
Explanation Identifying assets and risks is crucial to effectively tailor the incident response plan.
Q15

You are configuring a new policy in Symantec Endpoint Protection. What happens when you enable the 'Client Management’ option?

  • A Clients ignore new policies
  • B Clients can self-provision updates
  • C Clients will download updates immediately
  • D Clients receive notifications only
Explanation Enabling 'Client Management' allows clients to download updates immediately, while other options describe incorrect client behaviors.
Q16

Which service is responsible for enforcing security policies in SEP?

  • A Symantec Endpoint Protection Manager
  • B Symantec LiveUpdate
  • C Endpoint Protection Client
  • D Symantec Notification Service
Explanation The Symantec Endpoint Protection Manager enforces security policies, while the other services perform different functions.
Q17

A company needs to ensure real-time protection against various types of malware. Which feature of SEP should they enable?

  • A Firewall only
  • B Antivirus and Antispyware
  • C ASG only
  • D Intrusion Prevention only
Explanation Antivirus and Antispyware provides comprehensive real-time malware protection, while the others address specific threats.
Q18

What happens when a client falls out of communication with the SEP Management Server for an extended time?

  • A Client remains fully updated
  • B Client disables all security features
  • C Client operates as standalone with policies
  • D Client deletes all prior logs
Explanation The client operates with existing policies, but will not receive updates until communication resumes.
Q19

Which service must be enabled for full protection against zero-day threats?

  • A Sonar technology
  • B Firewall service
  • C Application control
  • D Network threat protection
Explanation Sonar technology is specifically designed for detecting zero-day threats, while the other services address different aspects of security.
Q20

A company needs to deploy Symantec Endpoint Protection in a configure-on-attack scenario, which mode should be used?

  • A Passive mode
  • B Encapsulated mode
  • C Sonic mode
  • D Runtime mode
Explanation Encapsulated mode allows SEP to respond to attacks persistently, making it suitable for configure-on-attack scenarios, whereas other modes don't offer this capability.