Question 1

An administrator receives an alert indicating the ESM service is not starting on the ESM Server. When the administrator tries to start the service manually, the administrator receives an error. "The Endpoint Security Manager service on Local Computer started and then stopped."

What is the cause of the failure?

Answer : B

Question 2

A customer has an environment with the following:

* 1,000 agents communicating over SSL with two servers - one containing the ESM Server and another one where the ESM Console is installed

* BitsUploads resides on the ESM Console server

* ESM Server and Console are using the default pods tor communication

In a scenario where a file is failing to be uploaded from macOS, which three reasons could be directly related to the failure? (Choose three.)

Answer : A, C, E

Question 3

An administrator can check which two indicators to verity that Traps for Mac is running correctly on an installed endpoint? (Choose two.)

Answer : B, D

Question 4

Which set of modules must be loaded and configured when using Metasploit?

Answer : C

Question 5

There are two custom policy rules in ESM Console. Policy rule number 1000 turns ROP off for winword.exe. Policy rule number 1001 turns ROP on for winword.exe

What is the ROP module status for winword.exe?

Answer : B

Question 6

Which two enhanced key usage purposes are necessary when creating an SSL certificate for an ESM server? (Choose two.)

Answer : B, C

Question 7

An administrator is testing an exploit that is expected to be blocked by the JIT Mitigation EPM protecting the viewer application in use. No prevention occurs, and the attack is successful.

In which two ways can the administrator determine the reason for the missed prevention? (Choose two.)

Answer : A, C

