with correct answers
usr
[COMPANY NAME] [Company address]
,1. The central console that provides
continuous asset-based security and com- pliance monitoring is .
Answer: Tenable.sc
2. The tool that probes hosts and does
active vulnerability and compliance scanning is Answer: Nessus Active
Vulnerability Scanner
3. The tool that can manage scan data,
run scans and pull in data from various Nessus Agent is the .
Answer: Nessus Manager
4. The Passive Scanner that
detects vulnerabilities by sniffing network traffic is the . Answer:
Nessus Network Monitor
5. What is ACAS? Answer: ACAS is a network-based security compliance and assessment
capability designed to provide awareness of the security posture and network health of
DoD networks
6. What is the task order for the implementation of enterprise use of
ACAS? Answer: -
20-0020
7. T/F
A vulnerability is a weakness of attack that can compromise your
system Answer: FALSE
A vulnerability is not an attack, it is a weakness
8. T/F
The Nessus scanner monitors data at rest, while the NNM monitors
data in motion Answer: TRUE
9. A lightweight program installed on the host that gives you
visibility into other IT assets that connect intermittently to the
internet Answer: A Nessus Agent
10. Which page loads by default when you log into Tenable.sc?
Answer: Dashboard
11. Which of the following pages displays the update schedule for
updating the active and passive plugins on security manager's
, interface? Answer: Feeds
12. Which page allows you to set your local time zone? Answer:
Profile
13. What can you do on the plugins page of Tenable.sc? Answer: Search
for specific plugins, view plugin details and source and upload custom plugins
14. A group of users responsible for a specific number of assets is
an
. Answer: Organization
15. A defined static range of IP addresses with
an associated Nessus scanner is called a . Answer: Scan Zone