SOPHOS ENGINEER ET80 EXAMS SCRIPT QUESTIONS AND
ANSWERS SURE A+
✔✔How does Sophos Automatic Device Isolation work? - ✔✔Server Protection and
Intercept X are used to assign each device a health status. If a device is compromised,
the device can be automatically isolated from other areas of the network via the firewall
and communicating with other devices. This limits infection of other devices on the
network
✔✔What does Email protection Control do? - ✔✔Stops information being leaked
outside of the organisation by email. You can create control lists to drop personal
identifiable information and financial data types depending on the action configured in
the policy
✔✔ What is Zero Trust? - ✔✔It is the mindset of don't trust anything verify everything
✔✔What is ZTNA? - ✔✔Sophos's Zero Trust Network Access
✔✔What is Sophos Lateral Protection? - ✔✔It is a micro segmentation solution. If
device becomes infected it will be isolated to stop the attack or regardless of the
Network Topology
✔✔What are the three key features of Sophos Firewall? - ✔✔It is a comprehensive
security device, with a zone-based firewall and Identity-based policies at its core.
It can expose hidden risk, stop unknown threats and isolate infected systems
It supports ZTNA by providing network segmentation and lateral movement protection
✔✔What are the phases of the Attack Kill Chain? - ✔✔1. Reconnaissance
2. Weaponization
3. Delivery
4. Exploitation
5. Installation
6. Command and control
7. Behaviour
✔✔What happens in the Reconnaissance and Weaponization phases of the Attack Kill
Chain? - ✔✔The attacker will passively harvest email addresses and company
information, before actively scanning the target environment using tools like port
Scanners
✔✔What happens in the Delivery phase of the Attack Kill Chain? - ✔✔The attacker will
access the estate to deliver the malicious payload via methods such as Email or social
engineering to direct the victim to a malicious site
ANSWERS SURE A+
✔✔How does Sophos Automatic Device Isolation work? - ✔✔Server Protection and
Intercept X are used to assign each device a health status. If a device is compromised,
the device can be automatically isolated from other areas of the network via the firewall
and communicating with other devices. This limits infection of other devices on the
network
✔✔What does Email protection Control do? - ✔✔Stops information being leaked
outside of the organisation by email. You can create control lists to drop personal
identifiable information and financial data types depending on the action configured in
the policy
✔✔ What is Zero Trust? - ✔✔It is the mindset of don't trust anything verify everything
✔✔What is ZTNA? - ✔✔Sophos's Zero Trust Network Access
✔✔What is Sophos Lateral Protection? - ✔✔It is a micro segmentation solution. If
device becomes infected it will be isolated to stop the attack or regardless of the
Network Topology
✔✔What are the three key features of Sophos Firewall? - ✔✔It is a comprehensive
security device, with a zone-based firewall and Identity-based policies at its core.
It can expose hidden risk, stop unknown threats and isolate infected systems
It supports ZTNA by providing network segmentation and lateral movement protection
✔✔What are the phases of the Attack Kill Chain? - ✔✔1. Reconnaissance
2. Weaponization
3. Delivery
4. Exploitation
5. Installation
6. Command and control
7. Behaviour
✔✔What happens in the Reconnaissance and Weaponization phases of the Attack Kill
Chain? - ✔✔The attacker will passively harvest email addresses and company
information, before actively scanning the target environment using tools like port
Scanners
✔✔What happens in the Delivery phase of the Attack Kill Chain? - ✔✔The attacker will
access the estate to deliver the malicious payload via methods such as Email or social
engineering to direct the victim to a malicious site