TREND MICRO DEEP
SECURITY PROFESSIONAL
PRACTICE EXAM 80
QUESTIONS
Question 1: A company cannot immediately patch a vulnerable web server. Which
Deep Security protection module is designed to provide virtual patching against exploit trac?
Choices:
1) Anti-Malware 2) Intrusion Prevention 3) Integrity Monitoring 4) Application Control
Correct Answer: Intrusion Prevention
Explanation: Intrusion Prevention can intercept trac that attempts to exploit known or zero- day vulnerabilities, providing virtual patching until the underlying software can be patched.Page 1
Question 2: Which Deep Security module is primarily intended to detect unexpected changes to les, registry items, services, processes, and other monitored system objects by comparing them with a baseline?
Choices:
1) Integrity Monitoring 2) Web Reputation 3) Firewall 4) Anti-Malware
Correct Answer: Integrity Monitoring
Explanation: Integrity Monitoring compares monitored system objects with a known baseline and records unexpected changes. It is a detection function rather than a malware scanning or network ltering function.
Question 3: An administrator wants to prevent newly introduced executables from
running unless they have been approved. Which Deep Security module best ts this requirement?
Choices:
1) Log Inspection 2) Application Control 3) Web Reputation 4) Firewall
Correct Answer: Application Control
Explanation: Application Control inventories approved software and can block unrecognized software until it is explicitly allowed.Page 2
Question 4: Which Deep Security module provides bidirectional stateful inspection of incoming and outgoing network trac?
Choices:
1) Firewall 2) Integrity Monitoring 3) Log Inspection 4) Application Control
Correct Answer: Firewall
Explanation: The Deep Security Firewall performs bidirectional stateful inspection and applies rewall rules to network trac.
Question 5: What is the primary role of Deep Security Manager in an on-premises
deployment?
Choices:
1) It centrally manages policies, computers, events, updates, and administrative conguration 2) It replaces every protected server operating system 3) It provides only a local antivirus scanner with no central management 4) It functions only as an external DNS resolver
Correct Answer: It centrally manages policies, computers, events, updates, and
administrative conguration Explanation: Deep Security Manager is the central management component used to congure protection, manage computers and policies, review events, and administer the deployment.Page 3