2013年7月9日星期二

Symantec meilleur examen ST0-085, questions et réponses

Pass4Test vous promet de vous aider à passer le test Symantec ST0-085, vous pouvez télécharger maintenant les Q&As partielles de test Symantec ST0-085 en ligne. Il y a encore la mise à jour gratuite pendant un an pour vous. Si vous malheureusement rater le test, votre argent sera 100% rendu.


Pass4Test est un site web de vous offrir particulièrement les infos plus chaudes à propos de test Certification Symantec ST0-085. Pour vous assurer à nous choisir, vous pouvez télécharger les Q&As partielles gratuites. Pass4Test vous promet un succès 100% du test Symantec ST0-085.


Code d'Examen: ST0-085

Nom d'Examen: Symantec (Symantec Security Information Manager 4.7 Technical Assessment)

Questions et réponses: 200 Q&As

Pass4Test est un site de provider les chances à se former avant le test Certification IT. Il y a de différentes formations ciblées aux tous candidats. C'est plus facile à passer le test avec la formation de Pass4Test. Parmi les qui ont déjà réussi le test, la majorité a fait la préparation avec la Q&A de Pass4Test. Donc c'est pourquoi, Pass4Test a une bonne réputation dansn l'Industrie IT.


Il y a nombreux façons à vous aider à réussir le test Symantec ST0-085. Le bon choix est l'assurance du succès. Pass4Test peut vous offrir le bon outil de formation, lequel est une documentation de qualité. La Q&A de test Symantec ST0-085 est recherchée par les experts selon le résumé du test réel. Donc l'outil de formation est de qualité et aussi autorisé, votre succès du test Symantec ST0-085 peut bien assuré. Nous allons mettre le jour successivement juste pour répondre les demandes de tous candidats.


ST0-085 Démo gratuit à télécharger: http://www.pass4test.fr/ST0-085.html


NO.1 Which tab on the Information Manager Console allows you to view threat and vulnerability information?
A.Rules
B.Dashboard
C.Reports
D.Intelligence
Answer: D

Symantec   ST0-085 examen   ST0-085 examen   ST0-085 examen

NO.2 On which two operating systems can the Symantec Security Information Manager Agent be installed?
(Select two.)
A.Solaris 9
B.Windows 2000
C.Centos
D.IBM AIX 5
E.HP-UX 11
Answer: AB

certification Symantec   ST0-085   certification ST0-085   ST0-085 examen

NO.3 Which component sends events to the Event Service for processing?
A.the Symantec Security Information Manager (SSIM) collector
B.the Symantec Security Information Manager (SSIM) on-box collector
C.the Symantec Security Information Manager (SSIM) off-box collector
D.the Symantec Security Information Manager (SSIM) agent
Answer: C

certification Symantec   ST0-085   certification ST0-085   ST0-085 examen

NO.4 Which component escalates security events into incidents?
A.rules
B.events
C.incidents
D.tickets
Answer: A

Symantec   ST0-085   certification ST0-085   ST0-085   certification ST0-085   ST0-085

NO.5 Which of the following are all on-box collectors?
A.PIX, UNIX Syslog and Data Leakage Prevention
B.Checkpoint, Snort and PIX
C.PIX, Snort and Symantec Web Gateway
D.Checkpoint, UNIX Syslog and Control Compliance Suite
Answer: B

Symantec   certification ST0-085   ST0-085   certification ST0-085

NO.6 What are the specified minimum hardware requirements for installing and running the Symantec
Security Information Manager Console?
A.1 GB RAM and 1 GB disk space
B.1 GB RAM and 512 MB disk space
C.512 MB RAM and 1 GB disk space
D.512 MB RAM and 103 MB disk space
Answer: D

Symantec   certification ST0-085   ST0-085   certification ST0-085   ST0-085

NO.7 What is the difference between Symantec Security Information Manager (SSIM) on-box and off-box
collectors?
A.Off-box collectors are installed on the SSIM products and on-box collectors are installed on the
appliance.
B.On-box collectors are installed prior to SSIM software installation and off-box collectors are installed
separately.
C.On-box collectors are automatically installed with the SSIM software and off-box collectors are installed
separately.
D.Off-box collectors are installed on the appliance and on-box collectors are installed on assets.
Answer: C

certification Symantec   ST0-085   ST0-085   ST0-085   ST0-085 examen

NO.8 Which OS listed does hardware used for the Symantec Security Information Manager (SSIM) image
support?
A.SUSE
B.Centos
C.Redhat
D.SE Linux
Answer: C

Symantec examen   certification ST0-085   ST0-085   ST0-085   ST0-085

NO.9 What information must be obtained prior to product deployment and configuration of the Symantec
Security Information Manager appliance?
A.which on-box collectors are appropriate for installation
B.the number of nodes found in the customer's infrastructure
C.the number of security events per day the appliance will handle
D.the air-conditioning and power requirements
Answer: A

Symantec   ST0-085   ST0-085 examen   ST0-085   certification ST0-085

NO.10 Symantec Security Information Manager Series Appliance installs which operating system by default?
A.Solaris
B.Windows
C.SUSE
D.Red Hat
Answer: D

Symantec   ST0-085   ST0-085   ST0-085

NO.11 Which database houses incidents and summary data?
A.Oracle
B.MySQL
C.MSSQL
D.IBM DB2
Answer: C

Symantec   ST0-085   ST0-085   certification ST0-085

NO.12 Where do Symantec Security Information Manager collectors send events?
A.Event Disposition
B.Event Archive
C.Event Reporting
D.Event Logger
Answer: D

certification Symantec   ST0-085 examen   ST0-085   certification ST0-085   ST0-085

NO.13 What are the hard drive specifications for the hardware?
A.6 drives (2 mirrored and 4 in RAID 5)
B.6 drives (2 mirrored and 4 in RAID 10)
C.6 drives (RAID 5)
D.2 drives (mirrored)
Answer: A

certification Symantec   certification ST0-085   ST0-085   ST0-085 examen

NO.14 What information is necessary to properly size a deployment?
A.hard drive space, events per second and geographic locations
B.events per second,collector types and incident-to-event ratio
C.hard drive space, incidents per second and collector types
D.events per second, geographic locations and event-to-incident ratio
Answer: D

certification Symantec   ST0-085   ST0-085

NO.15 What does the Correlation Engine analyze events against once all rules are properly defined?
A.the rule criteria, create triggers, and correlate conclusions into incidents
B.false positives, create conclusions, and correlate conclusions into incidents
C.the rule criteria, create conclusions, and correlate conclusions into incidents
D.the rule criteria, create conclusions, and send conclusions to the database
Answer: C

Symantec examen   ST0-085   ST0-085   ST0-085   ST0-085

NO.16 What is the purpose of the critical business assets management feature?
A.It enables automatic identification and prioritization of security threats that impact business-critical
applications.
B.It obtains an overview of business assets.
C.It makes it possible to change collectors' configurations to meet business assets needs.
D.It provides a visual picture of where critical business assets are located.
Answer: D

Symantec examen   ST0-085 examen   certification ST0-085   ST0-085   ST0-085 examen

NO.17 Which of the following vendor hardware is recommended to use with Symantec Security Information
Manager (SSIM)?
A.IBM
B.NEC
C.Dell
D.Hitachi
Answer: C

certification Symantec   ST0-085   ST0-085 examen   certification ST0-085

NO.18 What is Device-level aggregation?
A.parsing data with data sensors
B.grouping data to reduce traffic and database size
C.forwarding event data to the appliance
D.event and log sensoring
Answer: B

Symantec   certification ST0-085   ST0-085   ST0-085 examen   certification ST0-085

NO.19 Which Symantec Security Information Manager component retrieves security content in near-realtime
from Symantec?
A.LiveUpdate
B.LiveUpdate and licensed DeepSight Integration Module simultaneously
C.Licensed DeepSight Integration Module
D.Security content retrieval is automatic.
Answer: C

Symantec examen   ST0-085   ST0-085   certification ST0-085

NO.20 Which third-party software components support LDAP for users, roles, and configurations?
A.IBM Directory Server
B.Microsoft Active Directory Server
C.IBM DB2 8.1
D.IBM DB2 8.2
Answer: A

Symantec   ST0-085 examen   ST0-085

Le test certification Symantec ST0-085 est une bonne preuve de connaissances professionnelles et la techniques. Dans l'Industrie IT, beaucoiup de humains ressource font l'accent de lesquels certificats que les volontiers obtiennent. C'est clairement que le certificat Symantec ST0-085 puisse augmenter la compétition dans ce marché.


没有评论:

发表评论