





Study with the several resources on Docsity
Earn points by helping other students or get them with a premium plan
Prepare for your exams
Study with the several resources on Docsity
Earn points to download
Earn points by helping other students or get them with a premium plan
Community
Ask the community for help and clear up your study doubts
Discover the best universities in your country according to Docsity users
Free resources
Download our free guides on studying techniques, anxiety management strategies, and thesis advice from Docsity tutors
Key topics include patch deployment, vulnerability correlation, and the role of Cloud Agents. Correct answers emphasize the importance of testing patches, understanding the VMDR lifecycle, and leveraging Qualys tools for efficient patching.
Typology: Exams
1 / 9
This page cannot be seen from the preview
Don't miss anything!
Which of these is a reason for using a Patch Management solution? (A) To monitor logs on the asset (B) To scan for viruses (C) To close open ports and services (D) To address vulnerabilities - โโ(D) To address vulnerabilities Which of these Qualys solutions would you use to address vulnerabilities on your assets? (A) Vulnerability Management (B) Patch Management (C) Endpoint Detection and Response (D) Policy Compliance - โโ(B) Patch Management Which of these sensors does Qualys use to deploy patches? (A) Scanner appliances (B) Cloud connectors (C) Passive sensor (D) Cloud agent - โโ(D) Cloud agent Which of these actions is commonly performed after deploying patches? (A) Asset is decommissioned
(B) Asset is scanned (C) Asset is rebooted (D) Asset is reimaged - โโ(C) Asset is rebooted Which of these is a recommended approach to patching assets? (A) Uninstall old patches and apply new (B) Do not apply patches unless necessary (C) Apply patches on a set of test assets, verify that the patches do not cause issues, and patch the remaining assets (D) Apply patches on all assets right away - โโ(C) Apply patches on a set of test assets, verify that the patches do not cause issues, and patch the remaining assets Qualys Patch Management correlates missing patches with vulnerabilities. (A) False (B) True - โโ(B) True Which of these is true about Qualys Patch Management? (A) it can install the operating system and third-party application patches (B) it can install third-party application patches only (C) it can install operating system patches only - โโ(A) it can install the operating system and third-party application patches Which of these is used by Qualys Patch Management to deploy patches? (A) Scanner appliance (B) Cloud connector
Which of these is true? Which of these would you use to assign Patch Management licenses to hosts? (A) hostnames (B) IP addresses (C) asset tags (D) asset groups - โโ(C) asset tags You want to change the default assessment duration for missing patches? Which of the following will you perform? (A) Create a new activation key (B) Create and assign a new assessment profile (C) Redeploy the agent (D) Create a new configuration profile - โโ(B) Create and assign a new assessment profile What is the default "Cache size" allocated for Patch Management? (A) 2048 MB (B) 1024 MB (C) 512 MB (D) 256 MB - โโ(A) 2048 MB PM Work Flow - โโStep 1 : Install Cloud Agent on the target host Step 2 : Assign target agent host to a CA Configuration Profile that has PM enabled Step 3 : Assign PM license to the host Step 4 : Configure patch deployment job
Which of these can you use to include hosts in a patch deployment job?(Select 2 ) (A) a patch deployment job can be configured to suppress asset reboot (B) a patch deployment job cannot suppress asset reboot - โโ(A) a patch deployment job can be configured to suppress asset reboot Which of these is true about patch deployment jobs? (A) by default, all users can edit a patch deployment job (B) by default, only the user who created the patch deployment job can edit it - โโ(B) by default, only the user who created the patch deployment job can edit it You want to create a deployment job that includes patches based on criteria. For example - security patches with critical severity. Which patch selection option would you use?. (A) manual patch selection (B) automatic patch selection - โโ(B) automatic patch selection Which of these is true? (A) patch deployment jobs cannot be scheduled; they must run on-demand (B) patch deployment jobs can be scheduled for a future date - โโ(B) patch deployment jobs can be scheduled for a future date Which of these is true about patch deployment jobs? (A) only some patch jobs can be cloned (B) all patch jobs can be cloned - โโ(B) all patch jobs can be cloned
(D) Vm - โโ(B) PM (C) VMDR (D) Vm VMDR Prioritization Report helps you to: (A) Download patches from Vendor Global CDNs (B) Create tickets for high-risk vulnerabilities (C) Identify patches required to fix high-risk vulnerabilities (D) Identify vulnerabilities that pose the maximum risk to your business (E) Run scans to identify high-risk vulnerabilities - โโ(C) Identify patches required to fix high-risk vulnerabilities (D) Identify vulnerabilities that pose the maximum risk to your business Which query would you use to identify vulnerabilities that can be patched by Qualys Patch Management? (A)vulnerabilities.vulnerability.qualysPatchable:TRUE (B)Patchable.vulnerabilities.qualys:FALSE (C)vulnerabilities.vulnerability.qualysPatchable:FALSE (D)Patchable.vulnerabilities.qualys:TRUE - โโ(A)vulnerabilities.vulnerability.qualysPatchable:TRUE Which of these is true? (A) all vulnerabilities have a patch
(B) not all vulnerabilities have a patch - โโ(B) not all vulnerabilities have a patch VMDR Prioritization report automatically prioritizes the high-risk vulnerabilities for the most critical assets. (A) Correct (B) Incorrect - โโ(A) Correct Zero Touch Patching helps: (Select two) (A) To update endpoints and servers proactively as soon as patches are available (B) Automatically create tickets for missing patches (C) Automate patch vulnerabilities based on the Real Time Threat Indicators (RTIs) (D)Runs security scans after every four hours (E) Automatically export patch information - โโ(A) To update endpoints and servers proactively as soon as patches are available (C) Automate patch vulnerabilities based on the Real Time Threat Indicators (RTIs) Which query will list patches that Qualys can uninstall? (A) isUninstall: true (B) isRollback: true (C) isRollback: false (D) isUninstall: false - โโ(B) isRollback: true Which of these is true about a zero-touch patch job? (A) a zero-touch patch job can only be scheduled for a future date (B) a zero-touch patch job automatically includes required patches using a QQL query