TENABLE VULNERABILITY
MANAGEMENT
SPECIALIST PRACTICE
EXAM PART 1
Question 1: An organization wants to inventory live systems without performing
vulnerability checks. Which Tenable scan template is the best t?
Choices:
1) Basic Network Scan 2) Host Discovery 3) Credentialed Patch Audit 4) Policy Compliance Auditing
Correct Answer: Host Discovery
Explanation: The Host Discovery template is designed to identify live hosts and associated details such as IP addresses, FQDNs, operating systems, and open ports without performing a full vulnerability assessment.Page 1
Question 2: A security team needs the most complete patch and local-conguration visibility on Windows servers. Which scanning approach generally provides the best results?
Choices:
1) Unauthenticated external scanning 2) Credentialed scanning with appropriately privileged accounts 3) Ping-only discovery 4) DNS enumeration only
Correct Answer: Credentialed scanning with appropriately privileged accounts
Explanation: Credentialed scans let the scanner perform local checks on the target. With sucient privileges, they can enumerate missing patches and conguration details that remote unauthenticated checks may not reliably detect.
Question 3: During deployment, what is required to link an on-premises Tenable
Nessus scanner to Tenable Vulnerability Management?
Choices:
1) A scanner linking key from the Tenable Vulnerability Management instance 2) A CVE subscription token 3) A local Windows domain SID 4) A PCI attestation certicate Correct Answer: A scanner linking key from the Tenable Vulnerability Management instance Explanation: A linked scanner is associated with Tenable Vulnerability Management by using the scanner linking key obtained from the Sensors area of the Tenable Vulnerability Management instance.Page 2
Question 4: Which statement best describes the relationship between Tenable user roles and object permissions?
Choices:
1) Roles determine what actions a user can perform, while permissions determine the data or objects on which those actions can be performed 2) Roles and permissions are interchangeable terms 3) Permissions determine licensing and roles determine plugin feeds 4) Roles apply only to agents and permissions apply only to scanners Correct Answer: Roles determine what actions a user can perform, while permissions determine the data or objects on which those actions can be performed Explanation: In Tenable Vulnerability Management, roles govern available actions and permissions govern the objects or data on which those actions are allowed.Question 5: A host does not answer ICMP echo requests because of a rewall. Which conguration change can help a discovery scan still identify the host?
Choices:
1) Disable all TCP probes 2) Use additional supported ping methods such as TCP or ARP where appropriate 3) Limit discovery to DNS reverse lookups 4) Disable host discovery and scan no ports
Correct Answer: Use additional supported ping methods such as TCP or ARP where
appropriate Explanation: Tenable host discovery can use multiple discovery methods, including TCP, ARP, and ICMP. A host that blocks ICMP may still be discovered through another enabled method when network conditions permit.Page 3