QUALYS VULNERABILITY
MANAGEMENT DETECTION AND
RESPONSE COMPREHENSIVE TEST
SCRIPT 2026 QUESTIONS WITH
SOLUTIONS 100% CORRECT.
⚫ When using host-based findings, which of these needs to be
turned on to toggle the inclusion of Fixed vulnerabilities in the
report?***
(A) Trending
(B)
(C)
(D). Answer: (A) Trending
⚫ Which finding type allows you to include trending data in your
reports?***
(A) Scanner based findings
(B) San-based finding
(C) Cloud Agent-based findings
(D) Host-based findings. Answer: (D) Host-based findings
,⚫ Threat Protection RTIs are used in the___________ in VMDR to
identify the potential impact of discovered vulnerabilities, as well as
vulnerabilities that have known or existing threats. ***
(A) Prioritization report
(B) Remediation report
(C) Scorecard report
(D) Patch report. Answer: (A) Prioritization report
⚫ Identify the factor from the following that does not affect the
report generation process.***
(A) Number of detections
(B) Trending period
(C) Number of assets
(D) Number of graphics. Answer: (D) Number of graphics
⚫ Dashboard trend graphs are not meant to be an audit-ready
method of tracking data over time as widget changes can wipe of
previous trend data.***
(A) True
(B) False. Answer: (A) True
, ⚫ When building a dashboard widget mapped to a scan report
template, it's important to note that the ________ option is not
supported in VM/VMDR dashboard.***
(A) Exclude QIDs not exploitable due to configuration
(B) Exclude non-running kernel
(C) Exclude superseded patches
(D) Exclude non-running services. Answer: C) Exclude superseded
patches
⚫ Which of the following locations allows you to manually ignore
vulnerabilities on specific assets? Select all that apply.***
(A) Patch Report
(B) Host scan report generated in HTML format
(C) VMDR Prioritization report
(D) Asset Search results
(E) Search query results. Answer: (B) Host scan report generated in
HTML format
(D) Asset Search results
⚫ Which of the following criteria can be used when building a
custom vulnerability ranking scheme to align with your corporate
policies and standards? Select all that apply.***
(A) Vulnerability Severity
(B) Threat exposure
MANAGEMENT DETECTION AND
RESPONSE COMPREHENSIVE TEST
SCRIPT 2026 QUESTIONS WITH
SOLUTIONS 100% CORRECT.
⚫ When using host-based findings, which of these needs to be
turned on to toggle the inclusion of Fixed vulnerabilities in the
report?***
(A) Trending
(B)
(C)
(D). Answer: (A) Trending
⚫ Which finding type allows you to include trending data in your
reports?***
(A) Scanner based findings
(B) San-based finding
(C) Cloud Agent-based findings
(D) Host-based findings. Answer: (D) Host-based findings
,⚫ Threat Protection RTIs are used in the___________ in VMDR to
identify the potential impact of discovered vulnerabilities, as well as
vulnerabilities that have known or existing threats. ***
(A) Prioritization report
(B) Remediation report
(C) Scorecard report
(D) Patch report. Answer: (A) Prioritization report
⚫ Identify the factor from the following that does not affect the
report generation process.***
(A) Number of detections
(B) Trending period
(C) Number of assets
(D) Number of graphics. Answer: (D) Number of graphics
⚫ Dashboard trend graphs are not meant to be an audit-ready
method of tracking data over time as widget changes can wipe of
previous trend data.***
(A) True
(B) False. Answer: (A) True
, ⚫ When building a dashboard widget mapped to a scan report
template, it's important to note that the ________ option is not
supported in VM/VMDR dashboard.***
(A) Exclude QIDs not exploitable due to configuration
(B) Exclude non-running kernel
(C) Exclude superseded patches
(D) Exclude non-running services. Answer: C) Exclude superseded
patches
⚫ Which of the following locations allows you to manually ignore
vulnerabilities on specific assets? Select all that apply.***
(A) Patch Report
(B) Host scan report generated in HTML format
(C) VMDR Prioritization report
(D) Asset Search results
(E) Search query results. Answer: (B) Host scan report generated in
HTML format
(D) Asset Search results
⚫ Which of the following criteria can be used when building a
custom vulnerability ranking scheme to align with your corporate
policies and standards? Select all that apply.***
(A) Vulnerability Severity
(B) Threat exposure