(choose 2) ANS >>> 1. More vulnerabilities are detected
2. Time saved from manually investigating potential vulnerabilities
2. Which of the following are valid options for scanning targets? (choose 3) AN
>>> 1. Asset Groups
2. IP addressing
3. Asset Tags
3. What type of scanner appliance (already provisioned within the Qualys
Cloud Platform) is ideal for scanning public facing assets? ANS >>> External
Scanner
4. Which of the following is NOT a component of a vulnerability scan? ANS
>>> Host Discovery
5. Which of the following will have the greatest impact on a half red, half yellow
QID? ANS >>> Authentication
mailto:https://www.stuvia.com/user/techgrades 1/ 5
, 6. What is the maximum number of TCP ports that can participate in the Host
Discovery process? ANS >>> 20
7. Which of the following items are used to calculate the Business Risk score
for a particular asset group? (choose 2) ANS >>> Business Impact
Security Risk
8. In order to successfully perform an authenticated (trusted) scan, you must
create a(n) ANS >>> ANS >>> Authentication record
9. Multiple Remediation Policies are evaluated ANS >>> ANS >>> from top to botto
10. A search list contains a list of . ANS >>> QIDs
11. Dynamic Asset Tags are updated every time you. ANS >>> Run a scan
12. As a Manager in Qualys, which activities can be scheduled? ANS >>> Asset
Search- es
Updates to the KnowledgeBase
Maps
Reports
Scans
13. What does it mean when a "pencil" icon is associated with a QID in the
Qualys KnowledgeBase? ANS >>> The QID has been edited
14. Which item is not mandatory for launching a vulnerability scan? ANS >>>
Authenti- cation record
15. About how many services can Qualys detect via the Service Detection
Module? ANS >>> 600
mailto:https://www.stuvia.com/user/techgrades 2/ 5