Which Qualys sensor is used to scan hosts which have a public-facing IP addresses? - Answers External
Scanner
When should you add scannable host assets as DNS-tracked assets? - Answers When the assets are
using DHCP to acquire IP addresses
Child tags do not inherit the attributes or properties of their parent tags? T/F - Answers True
How can you ensure that a group of new critical assets are prioritized appropriately? - Answers Assign a
new Asset Tag with an Asset Criticality score of 5 to the new assets
How can you identify which assets need prioritizing and ensure that this information is always up-to-
date? - Answers Export prioritization results to a dashboard widget
Which feature would enable you to create a report which details the number of detections for a
particular vulnerability? - Answers Static search list
Which of the following would help you track authentication failures? - Answers Subscription health
dashboard
You wish to configure vulnerability scanning for hosts on a local area network. Which Qualys sensors
should you consider using? - Answers Hardware Appliance
Virtual Appliance
You need to ensure that there are no blind spots across your IT environment. You are looking for a
method to automatically detect and profile all network-connected systems. What is the best method of
achieving this goal? - Answers Deploy Qualys Passive Scanner and use the CSAM Asset Inventory to
check managed and unmanaged assets
You need to ensure that authentication is working for your scannable host assets. Which of the following
would be a suitable method of tracking authentication failures on an ongoing basis? - Answers Use the
Subscription Health Dashboard
You have been told that several assets have been decommisioned, and their IP addresses will soon be
re-used. What action should you take to ensure data hygiene in your subscription? - Answers Purge the
vulnerability history of the decommissioned assets
You are planning to implement role-based access control in your Qualys subscription. Some users need
to be able to initiate vulnerability scan and also read reports. Which role should you apply to those user
accounts? - Answers Scanner
You need to ensure that your scan jobs collect information from the hosts which is as accurate as
possible. Which setting in the Unix Authentication Record should you include? - Answers Root
delegation