Spring Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

Deep-Security-Professional Trend Micro Certified Professional for Deep Security Exam Questions and Answers

Questions 4

Which Protection Modules can make use of a locally installed Smart Protection Server?

Options:

A.

The Anti-Malware and Web Reputation Protection Modules can make use of the locally installed Smart Protection Server.

B.

All Protection Modules can make use of the locally installed Smart Protection Server

C.

Anti-Malware is the only Protection Modules that can use the locally installed Smart Protection Server.

D.

The Anti-Malware, Web Reputation and Intrusion Prevention Protection Modules can make use of the locally installed Smart Protection Server.

Buy Now
Questions 5

The details for an event are displayed in the exhibit. Based on these details, which Protection Module generated the event?

Deep-Security-Professional Question 5

Options:

A.

Firewall

B.

Intrusion Prevention

C.

Log Inspection

D.

Integrity Monitoring

Buy Now
Questions 6

Which of the following statements is true regarding software inventories used as part of the Application Control Protection Module?

Options:

A.

Disable the Application Control Protection Module when installing software upgrades, otherwise, the new software will be prevented from installing.

B.

An administrator can view the list of allowed software in the inventory from the Details tab for each individual Computer.

C.

An administrator can share the inventory of allowed software with other computers protected by Deep Security Agents, by copying the inventory database file (ac.db) from the source computer.

D.

When an administrator allows software that would be otherwise blocked by the Enforcement Mode, it isn't added to the inventory of approved software. Instead, it is added to that computer's whitelist.

Buy Now
Questions 7

Multiple Application Control Events are being displayed in Deep Security after a series of application updates and the administrator would like to reset Application Control. How can this be done?

Options:

A.

On the Deep Security Agent computer, type the following command to reset Application Control: dsa_control -r

B.

Click "Clear All" on the Actions tab in the Deep Security Manager Web console to reset the list of Application Control events.

C.

Application Control can be reset by disabling the Protection Module, then enabling it once again. This will cause local rulesets to be rebuilt.

D.

Application Control can not be reset.

Buy Now
Questions 8

How can you prevent a file from being scanned for malware?

Options:

A.

Enable "File Types scanned by IntelliScan" in the Malware Scan Configuration prop-erties in the Deep Security Manager Web console. Click "Scan All Except" and type the filename to exclude from the scan.

B.

Edit the "Scan Exclusions" section of the dsa.properties configuration file on the Deep Security Agent computer to include the file name. Save the configuration file and restart the Deep Security Agent service.

C.

Add the file to the Exclusions list in the Malware Scan Configuration.

D.

Add the file to the Exclusions list in the "Allowed Spyware/Grayware Configuration".

Buy Now
Questions 9

The Intrusion Prevention Protection Module is enabled, its Behavior is set to Prevent and rules are assigned. When viewing the events, you notice that one of Intrusion Prevention rules is being triggered and an event is being logged but the traffic is not being blocked. What is a possible reason for this?

Options:

A.

The Deep Security Agent is experiencing a system problem and is not processing packets since the "Network Engine System Failure" mode is set to "Fail Open".

B.

The network engine is running in Inline mode. In Inline mode, Deep Security provides no protection beyond a record of events.

C.

The Intrusion Prevention rule is being triggered as a result of the packet sanity check failing and the packet is being allowed to pass.

D.

The default Prevention Behavior in this particular rule may be set to Detect. This logs the triggering of the rule, but does not actually enforce the block.

Buy Now
Questions 10

What is the purpose of the override.properties file?

Options:

A.

This file is used to transfer policy settings from one installation of Deep Security Man-ager to another

B.

This file allows properties to be tested on Deep Security Manager without affecting the original configuration.

C.

This file contains the original out-of-the-box configuration properties for Deep Security Manager. This file is renamed to dsm.properties upon initialization of Deep Security Manager.

D.

This file allows Deep Security Agents to override enforced behavior by providing new policy configuration details.

Buy Now
Questions 11

Which of the following statements is true regarding the Intrusion Prevention Protection Module?

Options:

A.

The Intrusion Prevention Protection Module blocks or allows traffic based on header information within data packets.

B.

The Intrusion Prevention Protection Module analyzes the payload within incoming and outgoing data packets to identify content that can signal an attack.

C.

The Intrusion Prevention Protection Module can identify changes applied to protected objects, such as the Hosts file, or the Windows Registry.

D.

The Intrusion Prevention Protection Module can prevent applications from executing, allowing an organization to block unallowed software.

Buy Now
Questions 12

Which of the following statements is true regarding Intrusion Prevention protection?

Options:

A.

Intrusion Prevention protection can drop malicious packets but cannot reset the connection.

B.

Intrusion Prevention protection only works in conjunction with the Anti-Malware Protection Module.

C.

Intrusion Prevention protection can only work on computers where a Deep Security Agent is installed; agentless protection is not supported.

D.

Intrusion Prevention protection can drop or reset a connection.

Buy Now
Questions 13

Based on the script displayed in the exhibit, which of the following statements are correct? Select all that apply.

Deep-Security-Professional Question 13

Options:

A.

Deep Security Agents deployed using this script will be activated against Tenant 0 in a multi-tenant environment.

B.

This script will deploy the Deep Security Agent on a server, but will not automatically activate it.

C.

Deep Security Agents deployed using this script are activated against a specific tenant.

D.

Deep Security Agents deployed using this script will be assigned a specific policy when activated.

Buy Now
Questions 14

As the administrator in a multi-tenant environment, you would like to monitor the usage of security services by tenants? Which of the following are valid methods for monitoring the usage of the system by the tenants?

Options:

A.

Generate a Chargeback report in Deep Security manager Web console.

B.

All the choices listed here are valid.

C.

Use the Representational State Transfer (REST) API to collect usage data from the tenants.

D.

Monitor usage by the tenants from the Statistics tab in the tenant Properties window.

Buy Now
Questions 15

How is caching used by the Web Reputation Protection Module?

Options:

A.

Caching is used by the Web Reputation Protection Module to temporarily store the credibility score for a Web site. The retrieved credibility score is cached in case the score for the Web site is required again for the life of the cache.

B.

Caching is used by the Web Reputation Protection Module to temporarily store the pages that make up the Web site. The Web site is cached in case the site is visited again for the life of the cache.

C.

Caching is used by the Web Reputation Protection Module to keep track of Web sites that are added to the Allowed list. Any sites added to the Allowed list will be accessible by protected servers regardless of their credibility score.

D.

Caching is used by the Web Reputation Protection Module to keep track of Allowed and Blocked Web sites. Any sites that are Allowed or Blocked do not require the retrieval of a credibility score from the Trend Micro Web Reputation Service.

Buy Now
Questions 16

The maximum disk space limit for the Identified Files folder is reached. What is the expected Deep Security Agent behavior in this scenario?

Options:

A.

Any existing files are in the folder are compressed and forwarded to Deep Security Manager to free up disk space.

B.

Deep Security Agents will delete any files that have been in the folder for more than 60 days.

C.

Files will no longer be able to be quarantined. Any new files due to be quarantined will be deleted instead.

D.

Deep Security Agents will delete the oldest files in this folder until 20% of the allocated space is available.

Buy Now
Questions 17

Multi-tenancy is enabled in Deep Security and new tenants are created. Where does the new tenant data get stored when using SQL Server as the Deep Security database?

Options:

A.

The new tenant data is added to the existing SQL Server database.

B.

An additional table is created for each new tenant in the existing database in the SQL Server database to store its data.

C.

An additional database is created in SQL Server for each new tenant to store its data.

D.

An additional user is created for each new tenant in the SQL Server database to store its data.

Buy Now
Questions 18

When viewing the details for a policy, as displayed in the exhibit, you notice that the Application Control Protection Module is not available. In this example, why would this Protection Modules not be available?

Deep-Security-Professional Question 18

Options:

A.

The Application Control Protection Module has been disabled at the Base Policy level and is not displayed in the details for child policies.

B.

The Application Control Protection Module is only supported on Linux computers, the policy details displayed are for Windows computers only.

C.

An Activation Code for the Application Control Protection Module has not been pro-vided. Unlicensed Protection Modules will not be displayed.

D.

The Application Control Protection Modules has not been enabled for this tenant.

Buy Now
Questions 19

New servers are added to the Computers list in Deep Security Manager Web config by running a Discover operation. What behavior can you expect for newly discovered computers?

Options:

A.

Any servers discovered in the selected Active Directory branch hosting a Deep Security Agent will be added to the Computers list.

B.

Any servers within the IP address range hosting a Deep Security Agent will be added to the Computers list.

C.

Any servers within the IP address range that are hosting Deep Security Agents will be added to the Computers list and will be automatically activated.

D.

Any servers within the IP address range will be added to the Computers list, regardless of whether they are hosting a Deep Security Agent or not.

Buy Now
Questions 20

Which of the following VMware components is not required to enable agentless protection using Deep Security.

Options:

A.

VMware NSX

B.

VMware ESXi

C.

VMware vRealize

D.

VMware vCenter

Buy Now
Questions 21

In the policy displayed in the exhibit, the state of the Web Reputation Protection Module is set to "Inherited (On)", while the state for the other Protection Module is set to "On". Why is the Web Reputation Protection Module displayed differently than the other Protection Modules.

Deep-Security-Professional Question 21

Options:

A.

In this example, the state for the Web Reputation Protection Module is inherited from the parent policy, while the other Protection Modules were turned on specifically in this child policy.

B.

The state for a Protection Module is always displayed as "Inherited (On)" until the module components are installed on the Deep Security Agent.

C.

In this example, the state for the Web Reputation Protection Module is inherited from the parent policy, while the other Protection Modules were turned on at the computer level.

D.

In this example, the state for the Web Reputation Protection Module is listed as "In-herited (On)" as it was inherited from the default setting in the Base Policy.

Buy Now
Exam Name: Trend Micro Certified Professional for Deep Security Exam
Last Update: May 18, 2026
Questions: 73

PDF + Testing Engine

$64.99   $185.69

Testing Engine

$49.99   $142.83

PDF (Q&A)

$54.99   $157.11