100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

SOPHOS CERTIFIED ENGINEER EXAM QUESTIONS WITH 100 % CORRECT ANSWERS

Rating
-
Sold
-
Pages
8
Grade
A+
Uploaded on
28-12-2024
Written in
2024/2025

SOPHOS CERTIFIED ENGINEER EXAM QUESTIONS WITH 100 % CORRECT ANSWERS Which URL address do you use to login to Sophos Central Partner Dashboard? - ANSWER - You are detecting low-reputation files and want to change the reputation level from recommended to strict. Which policy do you edit to make this change? - ANSWER - Threat Protection What is the FIRST step you must take when deploying virtual environments? - ANSWER -Check the system requirements You want to prevent users from copying database files to USB drives without blocking the use of all USB devices. Which policy do you need to configure? - ANSWER -Data Loss Prevention TRUE or FALSE: You can search for a malicious item across your network using EDR - ANSWER -TRUE Which log provides a record of all activities? - ANSWER -Audit log What is the function of anti-exploit technology? - ANSWER -To detect and stop compromised vulnerable applications Complete the sentence: The SAV32CLI clean-up tool is a... - ANSWER -Command line tool included in Sophos Central installation When registering for a Sophos Central Trial, which of the following statements are TRUE? - ANSWER -You must use an email address that has not been used with Sophos Central before Which tab on the device details page displays the tamper protection information? - ANSWER -SUMMARY What is the function of Live Protection? - ANSWER -Connects to a cloud server to check for the latest information about a file How long are activities stored for in the Enterprise Dashboard? - ANSWER -90 days What is the function of an Update Cache? - ANSWER -To download updates from Sophos Central and store them on a dedicated server on your network What is the function of on-access scanning? - ANSWER -Monitors running processes' behavior Which of the following alerts is categorized as a high alert? - ANSWER -Failed to protect an endpoint Which dashboard allows you to manage and apply global settings to multiple Sophos Central accounts? - ANSWER -The Partner Dashboard Which detection feature can prevent attacks on the master boot record? - ANSWER - WipeGuard What is the function of a Message Relay? - ANSWER -To enable all devices to communicate all policy and reporting data using a dedicated server on your network True or False: Marking an alert as acknowledge will resolve the threat on the endpoint. - ANSWER -FALSE Which TCP port is used to communicate Updates on endpoints? - ANSWER -8191 TRUE or FALSE: The security VM installer is linked to your Sophos Central account. - ANSWER -FALSE TRUE or FALSE: You can deploy an update cache without a Message Relay. - ANSWER -TRUE You want to change an action for 'confidential' content. Where in Sophos Central do you make this change? - ANSWER -In the Data Loss Prevention Rule What does HIPS do on a protected endpoint? - ANSWER -Scans for potentially malicious behaviour You have cloned the threat protection base policy, applied the policy to a group and saved it. When checking the endpoint, the policy changes have not taken effect. What do you check in the policy? - ANSWER -That the cloned policy has been enforced In which 2 ways can you license the Enterprise Dashboard? - ANSWER -(1) Master Licensing (2) Individual Licensing Which TCP port is used to communicate policies to endpoints? - ANSWER -8190 Which Sophos Central manage product protects the data on a lost or stolen laptop? - ANSWER -Encryption The option to stop the AutoUpdate service is greyed out in Windows Services. What is the most likely reason for this? - ANSWER -Tamper Protection is enabled Complete the sentence: Signature-based file scanning relies on... - ANSWER - previously detected malware characteristics TRUE or FALSE: Tamper protection is enabled by default. - ANSWER -TRUE You are unable to edit policies in Sophos Central. What do you check in Sophos Central? - ANSWER -That you have the correct role assigned What is the minimum administrative role that will allow a user to create and edit policies? - ANSWER -Admin Complete the following sentence: The default protection base policy is configured with... - ANSWER -Sophos' recommended settings Which section in the Self-Help tool should be checked to start investigating an updating issue on an endpoint - ANSWER -System What does tamper protection prevent a user from doing on their endpoint with Sophos Central agent installed? - ANSWER -Prevents a user from uninstalling the Sophos agent software TRUE or FALSE: All server protection features are enabled by default. - ANSWER - FALSE Which endpoint protection policy protects users against malicious network traffic? - ANSWER -Threat Protection Which is the minimum administrative role that will allow a user to view alerts, perform updates and scan endpoints? - ANSWER -Help Desk Your Enterprise Dashboard has been configured with multiple sub-estates. In which 2 ways can you manage the licenses associated with the sub-estates? - ANSWER -(1) In the sub-estate Central Admin Console (2) In the Enterprise Dashboard Threat search results are split into which 2 of the following. - ANSWER -(1) Files (2) Network In which policy do you configure anti-virus scanning? - ANSWER -Threat Protection Which feature of Intercept X is designed to detect malware before it can execute? - ANSWER -Exploit technique detection True or False: You can choose to send email alerts immediately, hourly, daily or never. - ANSWER -True

Show more Read less
Institution
SOPHOS CERTIFIED ENGINEER
Course
SOPHOS CERTIFIED ENGINEER









Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
SOPHOS CERTIFIED ENGINEER
Course
SOPHOS CERTIFIED ENGINEER

Document information

Uploaded on
December 28, 2024
Number of pages
8
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

SOPHOS CERTIFIED ENGINEER EXAM QUESTIONS
WITH 100 % CORRECT ANSWERS
Which URL address do you use to login to Sophos Central Partner Dashboard? -
ANSWER -partnerportal.sophos.com

You are detecting low-reputation files and want to change the reputation level from
recommended to strict. Which policy do you edit to make this change? - ANSWER -
Threat Protection

What is the FIRST step you must take when deploying virtual environments? -
ANSWER -Check the system requirements

You want to prevent users from copying database files to USB drives without blocking
the use of all USB devices. Which policy do you need to configure? - ANSWER -Data
Loss Prevention

TRUE or FALSE: You can search for a malicious item across your network using EDR -
ANSWER -TRUE

Which log provides a record of all activities? - ANSWER -Audit log

What is the function of anti-exploit technology? - ANSWER -To detect and stop
compromised vulnerable applications

Complete the sentence: The SAV32CLI clean-up tool is a... - ANSWER -Command line
tool included in Sophos Central installation

When registering for a Sophos Central Trial, which of the following statements are
TRUE? - ANSWER -You must use an email address that has not been used with
Sophos Central before

Which tab on the device details page displays the tamper protection information? -
ANSWER -SUMMARY

What is the function of Live Protection? - ANSWER -Connects to a cloud server to
check for the latest information about a file

How long are activities stored for in the Enterprise Dashboard? - ANSWER -90 days

What is the function of an Update Cache? - ANSWER -To download updates from
Sophos Central and store them on a dedicated server on your network

What is the function of on-access scanning? - ANSWER -Monitors running processes'
behavior

, Which of the following alerts is categorized as a high alert? - ANSWER -Failed to
protect an endpoint

Which dashboard allows you to manage and apply global settings to multiple Sophos
Central accounts? - ANSWER -The Partner Dashboard

Which detection feature can prevent attacks on the master boot record? - ANSWER -
WipeGuard

What is the function of a Message Relay? - ANSWER -To enable all devices to
communicate all policy and reporting data using a dedicated server on your network

True or False: Marking an alert as acknowledge will resolve the threat on the endpoint. -
ANSWER -FALSE

Which TCP port is used to communicate Updates on endpoints? - ANSWER -8191

TRUE or FALSE: The security VM installer is linked to your Sophos Central account. -
ANSWER -FALSE

TRUE or FALSE: You can deploy an update cache without a Message Relay. -
ANSWER -TRUE

You want to change an action for 'confidential' content. Where in Sophos Central do you
make this change? - ANSWER -In the Data Loss Prevention Rule

What does HIPS do on a protected endpoint? - ANSWER -Scans for potentially
malicious behaviour

You have cloned the threat protection base policy, applied the policy to a group and
saved it. When checking the endpoint, the policy changes have not taken effect. What
do you check in the policy? - ANSWER -That the cloned policy has been enforced

In which 2 ways can you license the Enterprise Dashboard? - ANSWER -(1) Master
Licensing
(2) Individual Licensing

Which TCP port is used to communicate policies to endpoints? - ANSWER -8190

Which Sophos Central manage product protects the data on a lost or stolen laptop? -
ANSWER -Encryption

The option to stop the AutoUpdate service is greyed out in Windows Services. What is
the most likely reason for this? - ANSWER -Tamper Protection is enabled

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
TheExamMaestro Teachme2-tutor
View profile
Follow You need to be logged in order to follow users or courses
Sold
115
Member since
1 year
Number of followers
5
Documents
3052
Last sold
1 week ago
Exam Vault

Exam Vault is your trusted destination for high-quality exam materials and study resources. We provide a wide rage of tests and prep guides to help you succeed, whether you're preparing for academic exams, certifications, or professional assessments

3.8

13 reviews

5
7
4
2
3
1
2
0
1
3

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions