1 | Page
ET80 - SOPHOS FIREWALL V21.0 ENGINEER
EXAM COMPREHENSIVE QUESTION PRACTICE
TEST WITH VERIFIED ANSWERS AND
RATIONALES 2026 UPDATE – SOPHOS
ENGINEER CERTIFICATION
PART 1: SOPHOS FIREWALL OVERVIEW AND ARCHITECTURE
Question 1
What is a Sophos Firewall?
A) A basic packet filtering device
B) A comprehensive security device with a zone-based firewall and
identity-based policies at its core
C) A simple VPN concentrator
D) A web filtering appliance only
Verified Answer: B
Rationale: Sophos Firewall is a comprehensive security device, with a
zone-based firewall, and identity-based policies at its core. It provides
multiple security functions beyond basic firewalling including web
protection, application control, IPS, ATP, and advanced threat protection
.
,2 | Page
Question 2
What is the purpose of a Sophos Firewall?
A) To provide network connectivity only
B) To expose hidden risks, stop unknown threats, and isolate infected
systems
C) To manage user accounts
D) To host web applications
Verified Answer: B
Rationale: The purpose of a Sophos Firewall is to expose hidden risks
(See it), stop unknown threats (Stop it), and isolate infected systems
(Secure it). This three-part approach provides comprehensive security
for the network .
Question 3
How does a Sophos firewall provide protection?
A) Through separate management consoles for each product
B) Through a single cloud-based platform, making day-to-day
management of all Sophos products easy and scalable
C) Through on-premise management only
D) Through third-party integration only
Verified Answer: B
Rationale: Protection is provided through a single cloud-based platform,
making day-to-day management of all Sophos products (including the
,3 | Page
firewall) easy and scalable. This unified approach simplifies
administration .
Question 4
What is ZTNA in the context of Sophos Firewall?
A) Zero Trust Network Administration
B) Zero Trust Network Access - Sophos solution that bolsters a firewall
by adding granular controls and security for networked applications, in
the cloud or on-premise
C) Zone Transfer Network Access
D) Zero Traffic Network Assessment
Verified Answer: B
Rationale: ZTNA stands for Zero Trust Network Access, a Sophos
solution that enhances firewall capabilities by providing granular
controls and security for networked applications, both in the cloud and
on-premise. It is based on the principle of "don't trust anything, verify
everything" .
Question 5
What is Network Segmentation?
A) The process of encrypting all network traffic
B) Dividing a computer network into smaller pieces to improve network
performance and security
C) The process of combining multiple networks into one
, 4 | Page
D) The process of assigning IP addresses to devices
Verified Answer: B
Rationale: Network Segmentation divides a computer network into
smaller pieces. The purpose is to improve network performance and
security by containing threats and reducing the attack surface .
Question 6
What is Sophos Lateral Protection?
A) A solution that scans lateral network traffic for malware
B) A micro-segmentation solution where each individual endpoint is
effectively its own segment, able to be isolated in response to a threat
regardless of network topology
C) A feature that protects against man-in-the-middle attacks
D) A tool for monitoring east-west traffic only
Verified Answer: B
Rationale: Sophos Lateral Protection is an adaptive micro-segmentation
solution. Each endpoint becomes its own segment, and if a device
becomes infected, it can be isolated to stop the attack regardless of
network topology. If a device becomes infected it will be isolated to stop
the attack .
Question 7
What are the three key features of Sophos Firewall as described in the
certification material?
ET80 - SOPHOS FIREWALL V21.0 ENGINEER
EXAM COMPREHENSIVE QUESTION PRACTICE
TEST WITH VERIFIED ANSWERS AND
RATIONALES 2026 UPDATE – SOPHOS
ENGINEER CERTIFICATION
PART 1: SOPHOS FIREWALL OVERVIEW AND ARCHITECTURE
Question 1
What is a Sophos Firewall?
A) A basic packet filtering device
B) A comprehensive security device with a zone-based firewall and
identity-based policies at its core
C) A simple VPN concentrator
D) A web filtering appliance only
Verified Answer: B
Rationale: Sophos Firewall is a comprehensive security device, with a
zone-based firewall, and identity-based policies at its core. It provides
multiple security functions beyond basic firewalling including web
protection, application control, IPS, ATP, and advanced threat protection
.
,2 | Page
Question 2
What is the purpose of a Sophos Firewall?
A) To provide network connectivity only
B) To expose hidden risks, stop unknown threats, and isolate infected
systems
C) To manage user accounts
D) To host web applications
Verified Answer: B
Rationale: The purpose of a Sophos Firewall is to expose hidden risks
(See it), stop unknown threats (Stop it), and isolate infected systems
(Secure it). This three-part approach provides comprehensive security
for the network .
Question 3
How does a Sophos firewall provide protection?
A) Through separate management consoles for each product
B) Through a single cloud-based platform, making day-to-day
management of all Sophos products easy and scalable
C) Through on-premise management only
D) Through third-party integration only
Verified Answer: B
Rationale: Protection is provided through a single cloud-based platform,
making day-to-day management of all Sophos products (including the
,3 | Page
firewall) easy and scalable. This unified approach simplifies
administration .
Question 4
What is ZTNA in the context of Sophos Firewall?
A) Zero Trust Network Administration
B) Zero Trust Network Access - Sophos solution that bolsters a firewall
by adding granular controls and security for networked applications, in
the cloud or on-premise
C) Zone Transfer Network Access
D) Zero Traffic Network Assessment
Verified Answer: B
Rationale: ZTNA stands for Zero Trust Network Access, a Sophos
solution that enhances firewall capabilities by providing granular
controls and security for networked applications, both in the cloud and
on-premise. It is based on the principle of "don't trust anything, verify
everything" .
Question 5
What is Network Segmentation?
A) The process of encrypting all network traffic
B) Dividing a computer network into smaller pieces to improve network
performance and security
C) The process of combining multiple networks into one
, 4 | Page
D) The process of assigning IP addresses to devices
Verified Answer: B
Rationale: Network Segmentation divides a computer network into
smaller pieces. The purpose is to improve network performance and
security by containing threats and reducing the attack surface .
Question 6
What is Sophos Lateral Protection?
A) A solution that scans lateral network traffic for malware
B) A micro-segmentation solution where each individual endpoint is
effectively its own segment, able to be isolated in response to a threat
regardless of network topology
C) A feature that protects against man-in-the-middle attacks
D) A tool for monitoring east-west traffic only
Verified Answer: B
Rationale: Sophos Lateral Protection is an adaptive micro-segmentation
solution. Each endpoint becomes its own segment, and if a device
becomes infected, it can be isolated to stop the attack regardless of
network topology. If a device becomes infected it will be isolated to stop
the attack .
Question 7
What are the three key features of Sophos Firewall as described in the
certification material?