and Answers12
Which of the following groups is defined for each organization by default? - ANSWERS-Full
Access
When you create a group, select all of the objects that you could share to the group. -
ANSWERS-Assets, Assurance Report Cards, Credentials
You are adding a new user. Which of the following access settings apply to that user definition? -
ANSWERS-Asset Responsibility, Role, Group, Manage Objects
Where do you grant the ability to manage other users and their objects? - ANSWERS-In the
Users > User Definition
Which of the following are available through SecurityCenter's Workflow functionality? -
ANSWERS-Alerts and tickets
You can configure SecurityCenter to perform alerts based on the following condition types:
___________, ____________, or ____________ . - ANSWERS-Vulnerability, Event, Ticket
Occurrences
The trigger options for setting a SecurityCenter alert are IP count, Vulnerability/Event count, and
_____ count. - ANSWERS-Port
What alert function defines what an alert does after it has been triggered? - ANSWERS-Add
Actions
, Which of the following is NOT a potential action when defining an alert? - ANSWERS-Create
Scan Policies
Tickets can be automatically generated from an alert or manually created. - ANSWERS-True
What is ACAS? - ANSWERS-ACAS is a network-based security compliance and assessment
capability
designed to provide awareness of the security posture and network health of
DoD networks.
Which of the following best describes the SecurityCenter? - ANSWERS-The central console that
provides continuous asset-based security and
compliance monitoring
A vulnerability is a weakness or an attack that can compromise your system. - ANSWERS-False (a
vulnerability does not include an attack)
The Nessus scanner monitors data at rest, while the PVS monitors data in motion. - ANSWERS-
True
PVS detects vulnerabilities based on network traffic instead of actively scanning hosts. -
ANSWERS-True
Which ACAS component performs active vulnerability and compliance scanning? - ANSWERS-
Nessus
CMRS is a tool to provide DoD component- and enterprise-level situational awareness by
quantitatively displaying an organization's security posture. - ANSWERS-True