New Year Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmas50

McAfee MA0-104 - Intel Security Certified Product Specialist

Page: 2 / 3
Total 70 questions

The McAfee SIEM solution satisfies which of the following compliance requirements?

A.

Continuous monitoring, Log retention

B.

Personally Identifiable Information (Pll) protection

C.

Payment Card Industry/ Data Security Standard {PCI/ DSS) protection

D.

Patch management automation

Which of the following features of the Enterprise Log Manager (ELM) can alert the user if any data has been modified?

A.

Integrity Check

B.

SNMP Trap

C.

Log Audit

D.

ELM Database Check

Which of the following is the minimum amount of disk space required to install the McAfee Enterprise Security Manager (ESM) as a virtual machine?

A.

100 GB

B.

250GB

C.

500 GB

D.

1 TB

Which options within the Receiver properties should be selected to configure the device to respond to ICMP echo requests?

A.

Receiver ManagementAUpdate Device

B.

Receiver Configuration\lnterface

C.

Connedion\Status

D.

Key Management Key Device

One or more storage allocations, which together specify a total amount of storage, coupled with a data retention time that specifies the maximum number of days a log is to be stored, is known as a

A.

Storage Volume.

B.

Storage Pool.

C.

Storage Device.

D.

Storage Area Network (SAN).

The configuration of a receiver has recently been modified and issues occur. Which command will collect historical data?

 

A.

htop

B.

getstatsdata

C.

snmpget

D.

df

When displaying baseline averages using the automatic time range option, baseline data is correlated by using the same time period that is being used for the current query for which of the following past number of intervals?

A.

Three

B.

Seven

C.

Five

D.

Ten

The Global Blacklist feature can be used to block specific traffic from which of the following devices?

A.

Corporate Firewall

B.

Application Data Monitor (ADM)

C.

Event Receiver (ERC)

D.

Nitro IPS

When preparing to apply a patch to the Enterprise Security Manager (ESM) and completing the ESM checklist, the command cat/proc7mdstat has been issued to determine RAID functionally The system returns an active drive result identified as [U J What action should be taken?

A.

Apply the patch, this is a properly functional RAID which can be upgraded.

B.

Apply the patch, drive 1 is active and can be upgraded.

C.

Apply the patch, drive 2 is active and can be upgraded.

D.

Contact support before proceeding with the upgrade.

Which of the following is the default port used to communicate between McAfee SIEM devices?

 

A.

22

B.

222

C.

21

D.

211