Exit demo EPM-DEF CyberArk Defender - EPM PDF format · free preview

CyberArk EPM-DEF - Questions & Answers

Free preview · every answer includes a full explanation

Product page: https://prepkeys.com/epm-def.html

Question 1
Single choice

A Helpdesk technician needs to provide remote assistance to a user whose laptop cannot connect to the Internet to pull EPM policies.

What CyberArk EPM feature should the Helpdesk technician use to allow the user elevation capabilities?

A.

Offline Policy Authorization Generator

B.

Elevate Trusted Application If Necessary

C.

Just In Time Access and Elevation

D.

Loosely Connected Devices Credential Management

Question 2
Single choice

If Privilege Management is not working on an endpoint, what is the most likely cause that can be verified in the EPM Agent Log Files?

A.

Behavior of the elevation prompt for administrators in Admin Approval Mode is set to "Prompt for Consent for non-Windows binaries".

B.

Agent version is incompatible.

C.

UAC policy Admin Approval for the Built-in Administrator Account is set to "Disabled".

D.

UAC policy Run all administrators in Admin Approval Mode is set to "Enabled".

Question 3
Single choice

When deploying EPM and in the Privilege Management phase what is the purpose of Discovery?

A.

To identify all non-administrative events

B.

To identify all administrative level events

C.

To identify both administrative and non-administrative level events

D.

To identify non-administrative threats

Question 4
Single choice

What are valid policy options for JIT and elevation policies?

A.

Grant temporary access for all users, Policy name, Restart administrative processes in admin approval
mode, Collect audit information

B.

Grant temporary access for, Policy name, Terminate administrative processes when the policy expires, Collect audit information

C.

Grant administrative access, Policy name, Log off to apply policy, Collect policy violation information

D.

Terminate administrative services, Grant policy access for, Policy name, Collect audit reports

Question 5
Single choice

What can you manage by using User Policies?

A.

Just-In-Time endpoint access and elevation, access to removable drives, and Services access.

B.

Access to Windows Services only.

C.

Filesystem and registry access, access to removable drives, and Services access.

D.

Just-In-Time endpoint access and elevation, access to removable drives, filesystem and registry access, Services access, and User account control monitoring.

Question 6
Single choice

An EPM Administrator would like to enable CyberArk EPM's Ransomware Protection in Restrict mode.

What should the EPM Administrator do?

A.

Set Block unhandled applications to On.

B.

Set Protect Against Ransomware to Restrict.

C.

Set Protect Against Ransomware to Restrict and Set Block unhandled applications to On.

D.

Set Control unhandled applications to Detect.

Question 7
Single choice

Which setting in the agent configuration controls how often the agent sends events to the EPM Server?

A.

Event Queue Flush Period

B.

Heartbeat Timeout

C.

Condition Timeout

D.

Policy Update Rate

Question 8
Single choice

A policy needs to be created to block particular applications for a specific user group.
Based on CyberArk's policy naming best practices, what should be included in the policy's name?

A.

Policy creation date

B.

Target use group

C.

Creator of the policy

D.

The policy's Set name

Question 9
Single choice

What EPM component is responsible for communicating password changes in credential rotation?

A.

EPM Agent

B.

EPM Server

C.

EPM API

D.

EPM Discovery

Question 10
Single choice

Which programming interface enables you to perform activities on EPM objects via a REST Web Service?

A.

EPM Web Services SDK

B.

Application Password SDK

C.

Mac Credential Provider SDK

D.

Java password SDK

Showing 10 of 60 questions · Unlock the full set