Spring Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

Intel Security Certified Product Specialist

Last Update 20 hours ago Total Questions : 70

The Intel Security Certified Product Specialist content is now fully updated, with all current exam questions added 20 hours ago. Deciding to include MA0-104 practice exam questions in your study plan goes far beyond basic test preparation.

You'll find that our MA0-104 exam questions frequently feature detailed scenarios and practical problem-solving exercises that directly mirror industry challenges. Engaging with these MA0-104 sample sets allows you to effectively manage your time and pace yourself, giving you the ability to finish any Intel Security Certified Product Specialist practice test comfortably within the allotted time.

Question # 11

Checkpoint firewalls provide logs to the McAfee SIEM Receiver in which of the following formats?

A.

Syslog

B.

open Platform for Security (OPSEC)

C.

McAfee Event Format (MEF)

D.

Common Event Format (CEF)

Question # 12

With regard to Data Source configuration and event collection what does the acronym CEF stand for?

A.

Correlation Event Framing

B.

Common Event Format

C.

Common Event Framing

D.

Condition Event Format

Question # 13

Which of the following is the minimum amount of disk space required to install the McAfee Enterprise Security Manager (ESM) as a virtual machine?

A.

100 GB

B.

250GB

C.

500 GB

D.

1 TB

Question # 14

Which of the following is the Primary function of the Event Receiver (ERC) in relation to the Enterprise Security Manager (ESM)?

A.

Collect and parse events before the ESM pulls them form the ERC

B.

Collect and parse the events before the receiver forwards them to the ESM

C.

Collect and store the events before they are forwarded to the ESM for parsing

D.

Collect and parse the events before forwarding them to the ELM

Question # 15

Which options within the Receiver properties should be selected to configure the device to respond to ICMP echo requests?

A.

Receiver ManagementAUpdate Device

B.

Receiver Configuration\lnterface

C.

Connedion\Status

D.

Key Management Key Device

Question # 16

The security Analyst notices that there has been a large spike for Secure Shell < SSH) drops in the Network Intrusion Prevention System (NIPS). What other perimeter device will add more insight into what is happening?

A.

McAfee ePIocy Orchestrator (ePO)

B.

The core switch

C.

The external switch

D.

The firewall

Question # 17

Alarms using field match as the condition type allow for selected Actions to be taken when the Alarm condition is met. Which of the following McAfee ePolicy Orchestrator (ePO) Actions can be selected when creating such Alarm?

A.

Send Events

B.

Collect and Send Properties

C.

Agent Uninstall

D.

Assign Tag with ePO

Question # 18

When a Correlation Rule successfully triggers, this occurs at the

A.

Correlation Element.

B.

Correlation Processor.

C.

Correlation Engine.

D.

Correlation Manager.

Question # 19

Zones allow a user to group devices and the events they generate by

A.

Geographical location and IP reputation

B.

Geographical reputation and IP Address

C.

Geographical location and IP Address

D.

Geographical location and File reputation

Question # 20

Which of the following is the minimum number of CPUs required to build a virtual image Enterprise Security Manager (ESM)?

A.

Two units

B.

Four units

C.

Six units

D.

Eight units

Go to page: