Spring Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

156-590 Check Point Certified Threat Prevention Specialist (CTPS) Questions and Answers

Questions 4

What is a distinct limitation of Active Streaming compared to Passive Streaming in conjunction with Anti-Virus?

Options:

A.

Only scheduled scans are possible.

B.

File size limits.

C.

There is no limitation.

D.

Only a subset of file types supported.

Buy Now
Questions 5

You have been asked to inform your CEO about last week's security incident.

What SmartEvent mechanism are you going to use?

Options:

A.

You have to use Smart Event threat prevention View to get the information then extract it to csv format and then generate a pdf with this info.

B.

The executive reports generally contain abstract information without much technical detail. You have to use Smart Event Threat Prevention Report filtered for last week data.

C.

From the smart log you filter out traffic for last week and export it to a special report generate tool.

D.

You have to build a view for last week and submit it to your CEO.

Buy Now
Questions 6

Protections with a High Protection Impact rating go through which path?

Options:

A.

PXL

B.

SXL

C.

CPASXL

D.

F2F

Buy Now
Questions 7

What is the default SMS and SG update interval for IPS Protections (R80.20+)?

Options:

A.

Six hours

B.

Twelve hours

C.

Two hours

D.

Daily

Buy Now
Questions 8

What deployment options for SmartEvent exist?

Options:

A.

1. Standalone and 2. Distributed Deployment

B.

1. Integrated/Standalone and 2. Dedicated Server

C.

1. Prevent Mode and 2. Detect Mode

D.

1. High Availability Mode and 2. Load Sharing Mode

Buy Now
Questions 9

What does the IPS Follow Protections feature do?

Options:

A.

Automatically activates new protections based on profile

B.

Flags newly downloaded protections for review

C.

Generates a report of activity from new protections

D.

Highlights log entries for new protections

Buy Now
Questions 10

Using IPS can send a large part of traffic to F2F path.

Which command can you use to enforce traffic quotas?

Options:

A.

fw dos rate

B.

fwaccel rate

C.

fw ctl dos

D.

fwaccel dos rate

Buy Now
Questions 11

Where is IPS primarily enforced?

Options:

A.

Post-infection

B.

Post-inspection

C.

Pre-infection

D.

Pre-inspection

Buy Now
Questions 12

What does the profile cleanup option do?

Options:

A.

Adjusts all settings to Detect only

B.

Removes all Administrator overrides

C.

Deletes all Exemptions

D.

Removes corrupt updates

Buy Now
Questions 13

What is the default Track option for IPS Protections?

Options:

A.

UserCheck

B.

None

C.

Alert

D.

Log

Buy Now
Questions 14

What is the primary benefit of DNS Trap?

Options:

A.

Infected host identification

B.

Blocking known bad URLs

C.

Blocking outbound malicious DNS queries

D.

Blocking inbound malicious DNS queries

Buy Now
Questions 15

What is the name of the default Threat Prevention Profile?

Options:

A.

Basic

B.

Standard

C.

Strict

D.

Optimized

Buy Now
Questions 16

Which mode allows you to tune or troubleshoot the Threat Prevention Blade?

Options:

A.

Observe Mode

B.

Detect Mode

C.

Display Mode

D.

Watch Mode

Buy Now
Questions 17

What is the recommended setting for Anti-Virus and why?

Options:

A.

Background because it is Post-infection

B.

Hold because it is Pre-infection and inspects a limited subset of traffic

C.

Hold because it inspects a limited subset of traffic

D.

Background because it inspects a large subset of traffic

Buy Now
Questions 18

Are Cleanup Rules mandatory in a Threat Prevention Policy?

Options:

A.

Cleanup Rules are not required if you are using the Basic Profile.

B.

Cleanup Rules are only required, if the Access Control Policy does not have one.

C.

Cleanup Rules are not strictly required in the Threat Prevention Policy.

D.

A Cleanup Rule is required in a Basic Profile.

Buy Now
Questions 19

What is the impact of changing the Preconfigured Threat Prevention Profiles?

Options:

A.

The best practice for all Check Point delivered profiles and object is to first clone them and work on the clones.

B.

The impact is minimum if you first delete all of them and then build them from scratch.

C.

The impact can be minimized if you use the performance check tool. You can enable it in IPS protections - > actions - > Run Protection performance check tool.

D.

There is no performance or security impact in changing the Preconfigured Profiles.

Buy Now
Questions 20

What is necessary to do after an IPS Signature update?

Options:

A.

Perform "Install Database".

B.

Install the Threat Prevention Policy.

C.

Those changes are immediately active.

D.

Install the Access Control Policy.

Buy Now
Questions 21

Which of the following protocols can be scanned by Anti-Virus?

Options:

A.

RemoteDesktop

B.

SNMP

C.

CIFS

D.

Telnet

Buy Now
Questions 22

That Tracking option can be used to capture additional data for analysis by Check Point TAC?

Options:

A.

Alert

B.

Forensics

C.

SNMP

D.

User Defined

Buy Now
Exam Code: 156-590
Exam Name: Check Point Certified Threat Prevention Specialist (CTPS)
Last Update: May 31, 2026
Questions: 75

PDF + Testing Engine

$64.99   $185.69

Testing Engine

$49.99   $142.83

PDF (Q&A)

$54.99   $157.11