Question 16

What function does ICDm provide to automate the removal of detected threats from endpoints?
  • Question 17

    You are investigating a suspicious activity alert raised by EDR for a key endpoint within your organization. The alert shows a sequence of unknown processes, unexpected network connections, and unauthorized registry changes.
    As the assigned security analyst, what actions should you perform using the EDR tools in ICDm to thoroughly investigate and respond? (Choose three)
  • Question 18

    What benefit does SES Complete's mobile application security provide when deployed in a bring-your-own-device (BYOD) enterprise model?
  • Question 19

    Which SES Policy protects against port scan detections?
  • Question 20

    Scenario:
    You've just deployed TDAD across your organization's domain controllers. During the baseline phase, you observe frequent, yet legitimate administrative activity. You want to avoid false positives while still preparing for enforcement.
    Which two actions should you take? (Choose two)