Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

Endpoint Security Complete - R2 Technical Specialist

Last Update 3 hours ago Total Questions : 150

The Endpoint Security Complete - R2 Technical Specialist content is now fully updated, with all current exam questions added 3 hours ago. Deciding to include 250-580 practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our 250-580 exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these 250-580 sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any Endpoint Security Complete - R2 Technical Specialist practice test comfortably within the allotted time.

Question # 1

What prevention technique does Threat Defense for Active Directory use to expose attackers?

A.

Process Monitoring

B.

Obfuscation

C.

Honeypot Traps

D.

Packet Tracing

Question # 2

Which Symantec Endpoint Protection technology blocks a downloaded program from installing browser plugins?

A.

Intrusion Prevention

B.

SONAR

C.

Application and Device Control

D.

Tamper Protection

Question # 3

Where in the Attack Chain does Threat Defense for Active Directory provide protection?

A.

Attack Surface Reduction

B.

Attack Prevention

C.

Detection and Response

D.

Breach Prevention

Question # 4

What is a feature of Cynic?

A.

Local Sandboxing

B.

Forwarding event data to Security Information and Event Management (SIEM)

C.

Cloud Sandboxing

D.

Customizable OS Images

Question # 5

What EDR function minimizes the risk of an endpoint infecting other resources in the environment?

A.

Quarantine

B.

Block

C.

Deny List

D.

Firewall

Question # 6

Which action does SONAR take before convicting a process?

A.

Quarantines the process

B.

Blocks suspicious behavior

C.

Restarts the system

D.

Checks the reputation of the process

Question # 7

Which security threat stage seeks to gather valuable data and upload it to a compromised system?

A.

Exfiltration

B.

Impact

C.

Lateral Movement

D.

Command and Control

Question # 8

Which two (2) considerations must an administrator make when enabling Application Learning in an environment? (Select two.)

A.

Application Learning can generate increased false positives.

B.

Application Learning should be deployed on a small group of systems in the enterprise.

C.

Application Learning can generate significant CPU or memory use on a Symantec Endpoint Protection Manager.

D.

Application Learning requires a file fingerprint list to be created in advance.

E.

E . Application Learning is dependent on Insight.

Question # 9

Which Incident View widget shows the parent-child relationship of related security events?

A.

The Incident Summary Widget

B.

The Process Lineage Widget

C.

The Events Widget

D.

The Incident Graph Widget

Question # 10

Which term or expression is utilized when adversaries leverage existing tools in the environment?

A.

opportunistic attack

B.

file-less attack

C.

script kiddies

D.

living off the land

Go to page: