Online Access Free 250-441 Practice Test
| Exam Code: | 250-441 |
| Exam Name: | Administration of Symantec Advanced Threat Protection 3.0 |
| Certification Provider: | Symantec |
| Free Question Number: | 96 |
| Posted: | Jun 02, 2026 |
ATP detects a threat phoning home to a command and control server and creates a new incident. The treat is NOT being detected by SEP, but the Incident Response team conducted an indicators of compromise (IOC) search for the machines that are contacting the malicious sites to gather more information.
Which step should the Incident Response team incorporate into their plan of action?
An ATP administrator is setting up an Endpoint Detection and Response connection.
Which type of authentication is allowed?
How should an ATP Administrator configure Endpoint Detection and Response according to Symantec best practices for a SEP environment with more than one domain?


