Tenable Vulnerability Management Specialist
1. What is the primary reason host discovery is consid- It provides visibility into all
ered a crucial first step in vulnerability management the devices present in the
programs? network.
1. It enhances the speed of your internet connection.
2. It helps you remove viruses from your network
quickly
3. It reduces the cost of network management.
4. It provides visibility into all the devices present in
the network.
2. What is the main advantage of using the default Host It quickly gathers identifi-
Discovery scan template? cation and intelligence in-
1. It quickly gathers identification and intelligence in- formation on assets with
formation on assets with minimal network impact. minimal network impact.
2. It automatically repairs any vulnerabilities found.
3. It increases the security of the network by enforcing
stricter policies.
4. It eliminates the need for manual intervention in
the scanning process.
3. Why should discovery scans be run regularly within an To maintain an up-to-date
organization? view of active hosts within
1. To comply with international cybersecurity stan- the environment
dards.
2. To maintain an up-to-date view of active hosts with-
in the environment
3. To monitor employee internet usage.
4. To reduce bandwidth consumption on the network.
4. What is the recommended best practice when running Avoid scanning through a
scans related to firewalls? firewall if possible to pre-
1. Ensure all scans are run exclusively through fire-
, Tenable Vulnerability Management Specialist
walls for maximum security. vent misinterpretation as
2. Always use Internet Control Message Protocol an attack
(ICMP) pings to ensure the firewall is operational
3. Avoid scanning through a firewall if possible to pre-
vent misinterpretation as an attack.
4. Disable the firewall during scans to ensure uninter-
rupted scanning.
5. Which scan policy is normally used for a Basic Host Discovery Scan
Discovery scan?
1. Advanced Network Scan
2. Basic Network Scan
3. Discovery Scan
4. Ping Sweep
6. Look at your lab scan 'Operating System Discovery - 11936
HQ'. What is the plugin ID for OS Identification?
1. 10180
2. 19506
3. 10287
4. 11936
7. What types of pings can be enabled and/or disabled in All of these
a Host Discovery scan?
1. TCP
2. All of these
3. ARP
4. ICMP
8. What is the purpose of customizing a Host Discovery To get the best perfor-
scan? mance and results based
1. To reduce the security of the network. on specific network needs
2. To decrease the amount of information gathered and traffic
, Tenable Vulnerability Management Specialist
during a scan.
3. To get the best performance and results based on
specific network needs and traffic.
4. To reduce the security of the host
9. Look at your lab scan 'Operating System Discovery - 2
HQ'. How many assets returned OS Identification?
1.None
2. 2
3. 5
4. 7
10. Which method is used for Operating System (OS) iden- Guessing the operating
tification in a Host Discovery scan? system based on network
1. Guessing the operating system based on network responses.
responses.
2. Scanning the host with default credentials.
3. Using a direct authentication method
4. Manually inputting the operating system for each
host.
11. What happens when you select 'All' for port scanning? It scans all 65,535 ports,
1. It only scans the ports that are currently open potentially slowing down
2. It limits the scan to only the most used ports. the scan and stressing the
3. It scans all 65,535 ports, potentially slowing down network
the scan and stressing the network
4. It scans a custom list of ports provided by the user.
12. What setting is enabled by default for port scans, in Only the SYN scanner
order to speed up the process?
1. Only the SYN scanner.
2. Transmission Control Protocol (TCP) and User Data-
gram Protocol (UDP) port scans.
, Tenable Vulnerability Management Specialist
3. Internet Control Message Protocol (ICMP) ping re-
sponses.
4. Manual selection of each port to be scanned.
13. Operating System (OS) identification using a Host Dis- FALSE
covery scan is always completely reliable.
1. TRUE
2. FALSE
14. What is included in even the most basic Host Discovery Plugin 19506, Nessus
scan? Scan Information
1. Plugin 19506, Nessus Scan Information
2. Asset tagging options
3. Detailed vulnerability assessment
4. Compliance information
15. What is the best tool for overall asset analysis in Ten- The cumulative Assets
able Vulnerability Management? page
1. Nessus Scan Information plugin
2. The cumulative Assets page
3. Exporting filtered assets for reporting
4. Filters and tags
16. You can tag assets directly on the Cumulative Assets True
page
1. True
2. False
17. When you created the Regions:HQ tag in the lab, what Type is equal to Host
filter was still set, other than IPv4 Address?
1. Type is equal to Host
2. Licensed is True
1. What is the primary reason host discovery is consid- It provides visibility into all
ered a crucial first step in vulnerability management the devices present in the
programs? network.
1. It enhances the speed of your internet connection.
2. It helps you remove viruses from your network
quickly
3. It reduces the cost of network management.
4. It provides visibility into all the devices present in
the network.
2. What is the main advantage of using the default Host It quickly gathers identifi-
Discovery scan template? cation and intelligence in-
1. It quickly gathers identification and intelligence in- formation on assets with
formation on assets with minimal network impact. minimal network impact.
2. It automatically repairs any vulnerabilities found.
3. It increases the security of the network by enforcing
stricter policies.
4. It eliminates the need for manual intervention in
the scanning process.
3. Why should discovery scans be run regularly within an To maintain an up-to-date
organization? view of active hosts within
1. To comply with international cybersecurity stan- the environment
dards.
2. To maintain an up-to-date view of active hosts with-
in the environment
3. To monitor employee internet usage.
4. To reduce bandwidth consumption on the network.
4. What is the recommended best practice when running Avoid scanning through a
scans related to firewalls? firewall if possible to pre-
1. Ensure all scans are run exclusively through fire-
, Tenable Vulnerability Management Specialist
walls for maximum security. vent misinterpretation as
2. Always use Internet Control Message Protocol an attack
(ICMP) pings to ensure the firewall is operational
3. Avoid scanning through a firewall if possible to pre-
vent misinterpretation as an attack.
4. Disable the firewall during scans to ensure uninter-
rupted scanning.
5. Which scan policy is normally used for a Basic Host Discovery Scan
Discovery scan?
1. Advanced Network Scan
2. Basic Network Scan
3. Discovery Scan
4. Ping Sweep
6. Look at your lab scan 'Operating System Discovery - 11936
HQ'. What is the plugin ID for OS Identification?
1. 10180
2. 19506
3. 10287
4. 11936
7. What types of pings can be enabled and/or disabled in All of these
a Host Discovery scan?
1. TCP
2. All of these
3. ARP
4. ICMP
8. What is the purpose of customizing a Host Discovery To get the best perfor-
scan? mance and results based
1. To reduce the security of the network. on specific network needs
2. To decrease the amount of information gathered and traffic
, Tenable Vulnerability Management Specialist
during a scan.
3. To get the best performance and results based on
specific network needs and traffic.
4. To reduce the security of the host
9. Look at your lab scan 'Operating System Discovery - 2
HQ'. How many assets returned OS Identification?
1.None
2. 2
3. 5
4. 7
10. Which method is used for Operating System (OS) iden- Guessing the operating
tification in a Host Discovery scan? system based on network
1. Guessing the operating system based on network responses.
responses.
2. Scanning the host with default credentials.
3. Using a direct authentication method
4. Manually inputting the operating system for each
host.
11. What happens when you select 'All' for port scanning? It scans all 65,535 ports,
1. It only scans the ports that are currently open potentially slowing down
2. It limits the scan to only the most used ports. the scan and stressing the
3. It scans all 65,535 ports, potentially slowing down network
the scan and stressing the network
4. It scans a custom list of ports provided by the user.
12. What setting is enabled by default for port scans, in Only the SYN scanner
order to speed up the process?
1. Only the SYN scanner.
2. Transmission Control Protocol (TCP) and User Data-
gram Protocol (UDP) port scans.
, Tenable Vulnerability Management Specialist
3. Internet Control Message Protocol (ICMP) ping re-
sponses.
4. Manual selection of each port to be scanned.
13. Operating System (OS) identification using a Host Dis- FALSE
covery scan is always completely reliable.
1. TRUE
2. FALSE
14. What is included in even the most basic Host Discovery Plugin 19506, Nessus
scan? Scan Information
1. Plugin 19506, Nessus Scan Information
2. Asset tagging options
3. Detailed vulnerability assessment
4. Compliance information
15. What is the best tool for overall asset analysis in Ten- The cumulative Assets
able Vulnerability Management? page
1. Nessus Scan Information plugin
2. The cumulative Assets page
3. Exporting filtered assets for reporting
4. Filters and tags
16. You can tag assets directly on the Cumulative Assets True
page
1. True
2. False
17. When you created the Regions:HQ tag in the lab, what Type is equal to Host
filter was still set, other than IPv4 Address?
1. Type is equal to Host
2. Licensed is True