HBSS 501 Quiz |Questions with 100%
Correct Answers | Updated & Verified
2023-2024
1. CND Services include Prepare; Protect and _________ - --
Respond
-2. What action should be taken if an event is found to be a false
positive? - --Start the tuning process
-3. Which product is responsible for collecting endpoint
properties and policy enforcement? - --McAfee HIPS (?)
-4. What is the correct order for prioritizing events? - --Severity;
Action Taken; Volume
-5. An admin creates ___________ to manage the software
installed on the endpoint. - --Policies
-6. Which HIPS label shows the friendly name of a HIPS event? -
--Signature Name
-7. Which of the following is not true about ArcSight and
situational awareness? - --Prevention
-8. In order to manage an endpoint; ___________ must be installed.
- --McAfee Agent (?)
-9. A dashboard is a collection of __________ shown together in the
same location. - --Monitors
-10. Which VSE label shows the friendly name of a VSE event? -
--Threat Name
-11. Which feature does HIPS and VSE both have in common but
is disabled on one when both are installed on the same endpoint?
- --Buffer Overflow Protection
Correct Answers | Updated & Verified
2023-2024
1. CND Services include Prepare; Protect and _________ - --
Respond
-2. What action should be taken if an event is found to be a false
positive? - --Start the tuning process
-3. Which product is responsible for collecting endpoint
properties and policy enforcement? - --McAfee HIPS (?)
-4. What is the correct order for prioritizing events? - --Severity;
Action Taken; Volume
-5. An admin creates ___________ to manage the software
installed on the endpoint. - --Policies
-6. Which HIPS label shows the friendly name of a HIPS event? -
--Signature Name
-7. Which of the following is not true about ArcSight and
situational awareness? - --Prevention
-8. In order to manage an endpoint; ___________ must be installed.
- --McAfee Agent (?)
-9. A dashboard is a collection of __________ shown together in the
same location. - --Monitors
-10. Which VSE label shows the friendly name of a VSE event? -
--Threat Name
-11. Which feature does HIPS and VSE both have in common but
is disabled on one when both are installed on the same endpoint?
- --Buffer Overflow Protection