Pre-Winter Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Download Full Version 250-587 Symantec Exam

Page: 2 / 8
Total 108 questions

Symantec Data Loss Prevention 16.x Administration Technical Specialist Questions and Answers

Question 5

A DLP administrator is checking the System Overview in the Enforce management console, and all of the detection servers are showing as “unknown”. The Vontu services are up and running on the detection servers. Thousands of .IDC files are building up in the Incidents directory on the detection servers. There is good network connectivity between the detection servers and the Enforce server when testing with the telnet command.

How should the administrator bring the detection servers to a running state in the Enforce management console?

Options:

A.

Restart the Vontu Update Service on the Enforce server

B.

Ensure the Vontu Monitor Controller service is running in the Enforce server

C.

Delete all of the .BAD files in the Incidents folder on the Enforce server

D.

Restart the Vontu Monitor Service on all the affected detection servers

Question 6

Which two factors are common sources of data leakage where the main actor is well-meaning insider? (Choose two.)

Options:

A.

An absence of a trained incident response team

B.

A disgruntled employee for a job with a competitor

C.

Merger and Acquisition activities

D.

Lack of training and awareness

E.

Broken business processes

Question 7

What should an administrator do if DLP policies are generating too many false positives?

Options:

A.

Ignore incident reports until a critical issue arises.

B.

Disable all policies temporarily.

C.

Allow users to approve exceptions manually.

D.

Refine detection methods, such as Exact Data Matching (EDM) and fingerprinting.

Question 8

The Symantec Data Loss risk reduction approach has six stages.

Drag and drop the six correct risk reduction stages in the proper order of Occurrence column.

Options:

Page: 2 / 8
Total 108 questions