Which two automated response rules will be active in policies that include Exact Data Matching (EDM) detection rule? (Choose two.)
What is the default fallback option for the Endpoint Prevent Encrypt response rule?
Which type of detector integrates with Symantec CloudSOC?
What are two reasons an administrator should utilize a manual configuration to determine the endpoint location? (Choose two.)
What is the correct configuration for “BoxMonitor.Channels” that will allow the server to start as a Network Monitor server?
A DLP administrator needs to stop the PacketCapture process on a detection server. Upon inspection of the Server Detail page, the administrator discovers that all processes are missing from the display.
What are the processes missing from the Server Detail page display?
Which statement accurately describes where Optical Character Recognition (OCR) components must be installed?
What is the correct order for data in motion when a customer has integrated their CloudSOC and DLP solutions?
Which two (2) DLP products support Optical Character Recognition (OCR)? (Choose two.)
A customer needs to integrate information form DLP incidents into external Governance, Risk, and Compliance dashboards.
Which feature should a third-party component integrate with to provide dynamic reporting, create custom incident remediation processes, or support business processes?
What should an incident responder select in the Enforce management console to remediate multiple incidents simultaneously?
Which tool must a DLP administrator run to certify the database prior to upgrading DLP?
When configuring Network Prevent for Email, what is the role of Mail Transfer Agents (MTAs)?
A company needs to implement Data Owner Exception so that incidents when employees send or receive their own personal information.
What detection method should the company use?
A DLP administrator is testing Network Prevent for Web functionality. When the administrator posts a small test file to a cloud storage website, no new incidents are reported.
What should the administrator do to allow incidents to be generated against this file?
Which two locations can Symantec DLP scan and perform Information Centric Encryption (ICE) actions on? (Choose two.)
When Symantec DLP and Symantec CloudSOC are integrated, what must you configure in Enforce to tell CloudSOC which traffic or content to send to the Cloud Detection Service for analysis?
Which two components can perform a file system scan of a workstation? (Choose two.)
A DLP administrator needs to remove an agent its associated events from an Endpoint server.
Which Agent Task should the administrator perform to disable the agent’s visibility in the Enforce management console?
Which server target uses the “Automated Incident Remediation Tracking” feature in Symantec DLP?
What detection technology supports partial row matching?
Which action should a DLP administrator take to secure communications between an on-premises Enforce server and detection servers hosted in the Cloud?
Which network Prevent action takes place when the network Incident list shows the message is “Modified”?
What is Application Detection Configuration?
A software company wants to protect its source code, including new source code created between scheduled indexing runs.
Which detection method should the company use to meet this requirement?
Which two actions are available for a “Network Prevent: Remove HTTP/HTTPS content” response rule when the content is unable to be removed? (Choose two.)
A DLP administrator has performed a test deployment of the DLP 15.0 Endpoint agent and now wants to uninstall the agent. However, the administrator no longer remembers the uninstall password.
What should the administrator do to work around the password problem?
An organization wants to restrict employees to copy files only a specific set of USB thumb drives owned by the organization.
Which detection method should the organization use to meet this requirement?
What is required on the Enforce server to communicate with the Symantec DLP database?
Why would an administrator set the Similarity Threshold to s=zero when testing and tuning a Vector Machine Learning (VML) profile?
Which network DLP products support User Risk-Based Detection, in which Symantec DLP uses Symantec Information Centric Analytics (ICA) user risk scores in policy detection rules?
What is the first step an administrator should take to improve the performance of Network Monitor when network traffic exceeds 1 Gbps?