QUALYS REPORTING STRATEGIES
CERTIFICATION SCRIPT 2026 QUESTIONS
WITH SOLUTIONS GRADED A+
◍ Which of the following apply when using QQL queries for searching data?
Select all that apply.(A) Download search results into PDF, XML, MHT and
HTML file formats(B) Download search results into a CSV file(C) Schedule
the QQL query to run and export data daily, weekly, or monthly(D) Save the
query for future use (E) Create a report template from the query.
Answer: (B) Download search results into a CSV file(D) Save the query for
future use
◍ Which of these reporting options can help you quickly identify how many
assets have port 25 open? Select all that apply.(A) APIs(B) Queries (C)
Detailed scan reports (D) Dashboards(E) Qualys Application for Splunk.
Answer: (B) Queries (C) Detailed scan reports
◍ If a scanner uses invalid credentials to log into a target host, what would be
the outcome?.
Answer: Coverage is limited to Remote Only QIDs for that host
◍ Unified View refers to which of the following?.
Answer: Merging scan and agent data into one asset record
◍ Following the inference-based workflow, which is the first module to
execute?.
Answer: Host Discovery
◍ What term is used to describe the use of multiple Scanner Appliances in one
scan job?.
Answer: Scanner Parallelization
, ◍ This is the most optimal method to handle a firewall blocking Host
Discovery probes..
Answer: Include the port that the scanner can reach the target on
◍ Which of the following apply when using search queries in the VM/VMDR
application? Select all that apply.(A) Search results display information
gathering QIDs by default(B) Use of range queries is not recommended(C)
You can use asset-specific queries in the Vulnerability search area and
vice-versa(D) Avoid using the NOT clause for vulnerability search(E)
Avoid using the NOT clause for asset search.
Answer: (B) Use of range queries is not recommended(D) Avoid using the
NOT clause for vulnerability search
◍ Which of these is a recommended practice to remove stale data from your
subscription to ensure more accurate reports?(A) Enable trending(B) Report
Frequently (C) Use host-based reports(D) Purging.
Answer: (D) Purging
◍ By default, how are reports sorted?(A) By host(B) By vulnerability(C) By
operating system(D) By asset group.
Answer: (D) By asset group
◍ Patch supersedence requires host-based findings to be enabled in the report
template.(A) False(B) True.
Answer: (A) False
◍ Which of the following apply when searching for vulnerability information
in the VM/VMDR application?(A) Search results can be viewed in the form
of assets or vulnerabilities(B) Search results can be filtered to show fixed,
disabled, and ignored vulnerabilities(C) Search results can be filtered based
on patch supersedence (D) Search results can be exported into a CVS file(E)
Supports use of asset and/or vulnerability search queries.
Answer: (A) Search results can be viewed in the form of assets or
vulnerabilities(B) Search results can be filtered to show fixed, disabled, and
ignored vulnerabilities(E) Supports use of asset and/or vulnerability search
queries
CERTIFICATION SCRIPT 2026 QUESTIONS
WITH SOLUTIONS GRADED A+
◍ Which of the following apply when using QQL queries for searching data?
Select all that apply.(A) Download search results into PDF, XML, MHT and
HTML file formats(B) Download search results into a CSV file(C) Schedule
the QQL query to run and export data daily, weekly, or monthly(D) Save the
query for future use (E) Create a report template from the query.
Answer: (B) Download search results into a CSV file(D) Save the query for
future use
◍ Which of these reporting options can help you quickly identify how many
assets have port 25 open? Select all that apply.(A) APIs(B) Queries (C)
Detailed scan reports (D) Dashboards(E) Qualys Application for Splunk.
Answer: (B) Queries (C) Detailed scan reports
◍ If a scanner uses invalid credentials to log into a target host, what would be
the outcome?.
Answer: Coverage is limited to Remote Only QIDs for that host
◍ Unified View refers to which of the following?.
Answer: Merging scan and agent data into one asset record
◍ Following the inference-based workflow, which is the first module to
execute?.
Answer: Host Discovery
◍ What term is used to describe the use of multiple Scanner Appliances in one
scan job?.
Answer: Scanner Parallelization
, ◍ This is the most optimal method to handle a firewall blocking Host
Discovery probes..
Answer: Include the port that the scanner can reach the target on
◍ Which of the following apply when using search queries in the VM/VMDR
application? Select all that apply.(A) Search results display information
gathering QIDs by default(B) Use of range queries is not recommended(C)
You can use asset-specific queries in the Vulnerability search area and
vice-versa(D) Avoid using the NOT clause for vulnerability search(E)
Avoid using the NOT clause for asset search.
Answer: (B) Use of range queries is not recommended(D) Avoid using the
NOT clause for vulnerability search
◍ Which of these is a recommended practice to remove stale data from your
subscription to ensure more accurate reports?(A) Enable trending(B) Report
Frequently (C) Use host-based reports(D) Purging.
Answer: (D) Purging
◍ By default, how are reports sorted?(A) By host(B) By vulnerability(C) By
operating system(D) By asset group.
Answer: (D) By asset group
◍ Patch supersedence requires host-based findings to be enabled in the report
template.(A) False(B) True.
Answer: (A) False
◍ Which of the following apply when searching for vulnerability information
in the VM/VMDR application?(A) Search results can be viewed in the form
of assets or vulnerabilities(B) Search results can be filtered to show fixed,
disabled, and ignored vulnerabilities(C) Search results can be filtered based
on patch supersedence (D) Search results can be exported into a CVS file(E)
Supports use of asset and/or vulnerability search queries.
Answer: (A) Search results can be viewed in the form of assets or
vulnerabilities(B) Search results can be filtered to show fixed, disabled, and
ignored vulnerabilities(E) Supports use of asset and/or vulnerability search
queries