Spring Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Threat Protection Analyst PPAN01 Passing Score

Page: 3 / 4
Total 52 questions

Certified Threat Protection Analyst Exam Questions and Answers

Question 9

Which of the following is a useful training exercise for security analysts?

Options:

A.

Incident response tabletop

B.

Updating standard operating procedures

C.

Vulnerability scanning

D.

Network port scanning

Question 10

When filtering for threats on the TAP People page, which two filters have the highest chance of finding compromises? (Select two.)

Options:

A.

Exposure > Permitted Clicks

B.

Users > Locations

C.

Exposure > Delivered with Accessible Threat

D.

Threats > False Positives Only

E.

Users > VIP

Question 11

An analyst is reviewing the Threat Response Quarantines card for a message in TAP Dashboard, as shown in the exhibit.

Why might a message be flagged with status “unavailable”?

Options:

A.

The message was deleted from the mailbox before it could be quarantined.

B.

The message was automatically moved into a user-created folder for archiving.

C.

The message was delayed in delivery because of large attachment size.

D.

The message was marked as read by the user before it could be quarantined.

Question 12

Refer to Exhibit:

X-Proofpoint-Banner-Trigger: inbound

MIM-version: 1.0

Content-Type: multipart/mixed; boundary="boundary-1698346305"

X-CLX-Shades: MLX

X-Proofpoint-Virus-Version: vendor=baseguard

engine=ICAP:2.0.272,Aquarius:18.0.987,Hydra:6.0.619,FMLib:17.11.176.26 definitions=2023-10-26_22,2023-10-26_01,2023-05-22_02

X-Proofpoint-Spam-Details: rule=spam policy=default score=89 bulkscore=0 phishscore=0 mlxlogscore=-91 suspectscore=0 malwarescore=0 adultscore=0 spamscore=89 classifier=spam adjust=0 reason=mlx scancount=l engine=8.12.0-2310240000 definitions=main-2310260209

In the process of reviewing a false positive, you see the following email header. What was the reason the message was quarantined by the Proofpoint Protection Server?

Options:

A.

A custom spam rule caused the message to be quarantined.

B.

An anti-virus rule forced the message to be quarantined.

C.

The recipient's personal block list forced quarantine of the message.

D.

A content policy rule (DLP/compliance) forced quarantine of the message.

Page: 3 / 4
Total 52 questions