Question 16
What function does ICDm provide to automate the removal of detected threats from endpoints?
Question 17
You are investigating a suspicious activity alert raised by EDR for a key endpoint within your organization. The alert shows a sequence of unknown processes, unexpected network connections, and unauthorized registry changes.
As the assigned security analyst, what actions should you perform using the EDR tools in ICDm to thoroughly investigate and respond? (Choose three)
As the assigned security analyst, what actions should you perform using the EDR tools in ICDm to thoroughly investigate and respond? (Choose three)
Question 18
What benefit does SES Complete's mobile application security provide when deployed in a bring-your-own-device (BYOD) enterprise model?
Question 19
Which SES Policy protects against port scan detections?
Question 20
Scenario:
You've just deployed TDAD across your organization's domain controllers. During the baseline phase, you observe frequent, yet legitimate administrative activity. You want to avoid false positives while still preparing for enforcement.
Which two actions should you take? (Choose two)
You've just deployed TDAD across your organization's domain controllers. During the baseline phase, you observe frequent, yet legitimate administrative activity. You want to avoid false positives while still preparing for enforcement.
Which two actions should you take? (Choose two)
