Tenable Vulnerability Management Specialist Practice Exam Part 1

EXAMS AND CERTIFICATIONS
Loading...

Loading secure study guide viewer...

Page 0 of 0

Document Text

TENABLE VULNERABILITY

MANAGEMENT

SPECIALIST PRACTICE

EXAM PART 1

Question 1: An organization wants to inventory live systems without performing

vulnerability checks. Which Tenable scan template is the best �t?

Choices:

1) Basic Network Scan 2) Host Discovery 3) Credentialed Patch Audit 4) Policy Compliance Auditing

Correct Answer: Host Discovery

Explanation: The Host Discovery template is designed to identify live hosts and associated details such as IP addresses, FQDNs, operating systems, and open ports without performing a full vulnerability assessment.Page 1

Question 2: A security team needs the most complete patch and local-con�guration visibility on Windows servers. Which scanning approach generally provides the best results?

Choices:

1) Unauthenticated external scanning 2) Credentialed scanning with appropriately privileged accounts 3) Ping-only discovery 4) DNS enumeration only

Correct Answer: Credentialed scanning with appropriately privileged accounts

Explanation: Credentialed scans let the scanner perform local checks on the target. With su�cient privileges, they can enumerate missing patches and con�guration details that remote unauthenticated checks may not reliably detect.

Question 3: During deployment, what is required to link an on-premises Tenable

Nessus scanner to Tenable Vulnerability Management?

Choices:

1) A scanner linking key from the Tenable Vulnerability Management instance 2) A CVE subscription token 3) A local Windows domain SID 4) A PCI attestation certi�cate Correct Answer: A scanner linking key from the Tenable Vulnerability Management instance Explanation: A linked scanner is associated with Tenable Vulnerability Management by using the scanner linking key obtained from the Sensors area of the Tenable Vulnerability Management instance.Page 2

Question 4: Which statement best describes the relationship between Tenable user roles and object permissions?

Choices:

1) Roles determine what actions a user can perform, while permissions determine the data or objects on which those actions can be performed 2) Roles and permissions are interchangeable terms 3) Permissions determine licensing and roles determine plugin feeds 4) Roles apply only to agents and permissions apply only to scanners Correct Answer: Roles determine what actions a user can perform, while permissions determine the data or objects on which those actions can be performed Explanation: In Tenable Vulnerability Management, roles govern available actions and permissions govern the objects or data on which those actions are allowed.Question 5: A host does not answer ICMP echo requests because of a �rewall. Which con�guration change can help a discovery scan still identify the host?

Choices:

1) Disable all TCP probes 2) Use additional supported ping methods such as TCP or ARP where appropriate 3) Limit discovery to DNS reverse lookups 4) Disable host discovery and scan no ports

Correct Answer: Use additional supported ping methods such as TCP or ARP where

appropriate Explanation: Tenable host discovery can use multiple discovery methods, including TCP, ARP, and ICMP. A host that blocks ICMP may still be discovered through another enabled method when network conditions permit.Page 3

Download Study Guide

Buy This Guide

$39.00 One-time purchase
Buy Now
  • Full access to this guide
  • Download anytime
  • No expiration

Study Guide Information

Category: EXAMS AND CERTIFICATIONS
Description:

TENABLE VULNERABILITY MANAGEMENT SPECIALIST PRACTICE EXAM PART 1 Question 1: An organization wants to inventory live systems without performing vulnerability checks. Which Tenable scan template is ...

Get this guide $39.00