TANIUM ESSENTIALS TEST PAPER EXAM UPDATED
QUESTIONS AND ANSWERS GRADED A+
✔✔Use cases for Tanium Comply - ✔✔- continuous vulnerability scanning
- Evaluate unmanaged devices
- Leverage industry standard benchmarks and compliance checks for security policy
auditing and gap analysis
✔✔What is a setup in Tanium Comply? - ✔✔Manage scan engines, JRE's and other
custom settings for both compliance and vulnerability
✔✔What are standards in Tanium comply? - ✔✔manage the library of standards used
by assessments, reports, and findings.
✔✔How do you get to Assessments? - ✔✔Comply > Assessments
✔✔What are the three options for creating a new assessment? - ✔✔- Compliance
- Vulnerability
- Remote Vulnerability
✔✔What Scanning Engines are supported for use in assessments in Tanium Comply? -
✔✔- CIS-CAT Pro
- JovalICM/ Tanium Scanning Engine (TSE)
- SCAP Compliance Checker (SCC)
✔✔What type of benchmark formats does comply support? - ✔✔SCAP 1.1 and SCAP
1.2
✔✔What places can provide vulnerability definitions - ✔✔- CIS
- DISA
- OpenSCAP Security Guide
- USGCB
- NIST
- Red Hat
✔✔What does the Tanium Vulnerability Library contain? - ✔✔OVAL vulnerability
definitions. this library is updated every 24 hours
✔✔What OS's are vulnerability reports available for? - ✔✔Windows, MAC OS, and
Linux
✔✔What does a Remote Vulnerability Report do? - ✔✔It identifies vulnerabilities for
unmanaged devices on the enterprise network
,✔✔What version of Discover is required to run the remote vulnerability report? -
✔✔Discover 2.9.0
✔✔What file formats can you export your findings to? And where do you go to do this? -
✔✔CSV and HTML
Comply > Reports > Exports
✔✔Three methods to export findings data - ✔✔Comply - Comply > Assessments >
select assessment > then export
Interact - use comply sensor to gather data then select results
Using connect- navigate to connect > create a new connection using tanium comply as
the source
✔✔How to create granular reporting - ✔✔by combining sensors and saved questions
you can create granular reporting to address numerous internal and external
compliance and reporting requirements
✔✔What is the goal of SCAP? - ✔✔to enable the automated vulnerability management,
measurement, and policy compliance evaluation of systems deployed in an
organization.
✔✔What is SCAP? - ✔✔A set of standards for sharing security data developed by NIST
and MITRE
✔✔Is Tanium Comply SCAP compliant? - ✔✔No, but we can help Tanium customers
with SCAP implementation and monitoring
✔✔List of Compliance Assessments things? - ✔✔- Security Content Automation
Protocol (SCAP)
- Common Platform Enumeration (CPE)
- Extensible Configuration Checklist Description Format (XCCDF)
✔✔List of Vulnerability Assessments things? - ✔✔- Open Vulnerability And Assessment
Language (OVAL)
- Common Vulnerabilities and Exposures (CVE)
- Common Vulnerability Scoring System (CVSS)
✔✔What is Tanium connects purpose? - ✔✔to work with third party security and
management tools with accurate and complete endpoint data.
, ✔✔What does connect destinations do? - ✔✔Determines where the source sends data
to
✔✔What is the best practice for scheduling connections to run? - ✔✔Give connections
enough time between them so there is overlap only if absolutely necessary.
-if multiple connections are required notify a TAM for additional tuning options.
✔✔Where do you find a list of sources and destinations for Tanium connect? - ✔✔On
the Tanium Connect Documentation Website
✔✔What is software with regards to deploy? - ✔✔View software packages, bundles,
and the pre defined package gallery
✔✔What is deployments with regards to deploy? - ✔✔Install, update or remove
applications on targeted endpoints
✔✔What are Deployment Templates with regards to deploy? - ✔✔Save deployment
settings that you can issue repeatedly
✔✔What is Maintence Windows with regards to deploy? - ✔✔Permits times that target
computer groups are open for deployments
✔✔What Are self service profiles with regards to deploy? - ✔✔These empower users to
manage software on their own without the need of IT or local admin rights
✔✔What are the 5 options in the deploy workbentch? - ✔✔- Software
- Deployments
- Deployment Templates
- Maintenance Windows
- Self Service Profiles
✔✔What are the 5 Applicability States? - ✔✔-Install Eligible
-Update Eligible
-Installed
-Update Ineligible
- Not Applicable
✔✔What does Install Eligible Notate? - ✔✔The count of the systems where the software
is not installed, and system requirements are met
✔✔What does Update Eligible Notate? - ✔✔the count of systems where one or more of
the previous versions of the application are detected and the software package can
install those updates
QUESTIONS AND ANSWERS GRADED A+
✔✔Use cases for Tanium Comply - ✔✔- continuous vulnerability scanning
- Evaluate unmanaged devices
- Leverage industry standard benchmarks and compliance checks for security policy
auditing and gap analysis
✔✔What is a setup in Tanium Comply? - ✔✔Manage scan engines, JRE's and other
custom settings for both compliance and vulnerability
✔✔What are standards in Tanium comply? - ✔✔manage the library of standards used
by assessments, reports, and findings.
✔✔How do you get to Assessments? - ✔✔Comply > Assessments
✔✔What are the three options for creating a new assessment? - ✔✔- Compliance
- Vulnerability
- Remote Vulnerability
✔✔What Scanning Engines are supported for use in assessments in Tanium Comply? -
✔✔- CIS-CAT Pro
- JovalICM/ Tanium Scanning Engine (TSE)
- SCAP Compliance Checker (SCC)
✔✔What type of benchmark formats does comply support? - ✔✔SCAP 1.1 and SCAP
1.2
✔✔What places can provide vulnerability definitions - ✔✔- CIS
- DISA
- OpenSCAP Security Guide
- USGCB
- NIST
- Red Hat
✔✔What does the Tanium Vulnerability Library contain? - ✔✔OVAL vulnerability
definitions. this library is updated every 24 hours
✔✔What OS's are vulnerability reports available for? - ✔✔Windows, MAC OS, and
Linux
✔✔What does a Remote Vulnerability Report do? - ✔✔It identifies vulnerabilities for
unmanaged devices on the enterprise network
,✔✔What version of Discover is required to run the remote vulnerability report? -
✔✔Discover 2.9.0
✔✔What file formats can you export your findings to? And where do you go to do this? -
✔✔CSV and HTML
Comply > Reports > Exports
✔✔Three methods to export findings data - ✔✔Comply - Comply > Assessments >
select assessment > then export
Interact - use comply sensor to gather data then select results
Using connect- navigate to connect > create a new connection using tanium comply as
the source
✔✔How to create granular reporting - ✔✔by combining sensors and saved questions
you can create granular reporting to address numerous internal and external
compliance and reporting requirements
✔✔What is the goal of SCAP? - ✔✔to enable the automated vulnerability management,
measurement, and policy compliance evaluation of systems deployed in an
organization.
✔✔What is SCAP? - ✔✔A set of standards for sharing security data developed by NIST
and MITRE
✔✔Is Tanium Comply SCAP compliant? - ✔✔No, but we can help Tanium customers
with SCAP implementation and monitoring
✔✔List of Compliance Assessments things? - ✔✔- Security Content Automation
Protocol (SCAP)
- Common Platform Enumeration (CPE)
- Extensible Configuration Checklist Description Format (XCCDF)
✔✔List of Vulnerability Assessments things? - ✔✔- Open Vulnerability And Assessment
Language (OVAL)
- Common Vulnerabilities and Exposures (CVE)
- Common Vulnerability Scoring System (CVSS)
✔✔What is Tanium connects purpose? - ✔✔to work with third party security and
management tools with accurate and complete endpoint data.
, ✔✔What does connect destinations do? - ✔✔Determines where the source sends data
to
✔✔What is the best practice for scheduling connections to run? - ✔✔Give connections
enough time between them so there is overlap only if absolutely necessary.
-if multiple connections are required notify a TAM for additional tuning options.
✔✔Where do you find a list of sources and destinations for Tanium connect? - ✔✔On
the Tanium Connect Documentation Website
✔✔What is software with regards to deploy? - ✔✔View software packages, bundles,
and the pre defined package gallery
✔✔What is deployments with regards to deploy? - ✔✔Install, update or remove
applications on targeted endpoints
✔✔What are Deployment Templates with regards to deploy? - ✔✔Save deployment
settings that you can issue repeatedly
✔✔What is Maintence Windows with regards to deploy? - ✔✔Permits times that target
computer groups are open for deployments
✔✔What Are self service profiles with regards to deploy? - ✔✔These empower users to
manage software on their own without the need of IT or local admin rights
✔✔What are the 5 options in the deploy workbentch? - ✔✔- Software
- Deployments
- Deployment Templates
- Maintenance Windows
- Self Service Profiles
✔✔What are the 5 Applicability States? - ✔✔-Install Eligible
-Update Eligible
-Installed
-Update Ineligible
- Not Applicable
✔✔What does Install Eligible Notate? - ✔✔The count of the systems where the software
is not installed, and system requirements are met
✔✔What does Update Eligible Notate? - ✔✔the count of systems where one or more of
the previous versions of the application are detected and the software package can
install those updates