CSE RSA Data Loss Prevention 6.0
CSE RSA Data Loss Prevention 6.0

Questions & Answers for RSA 050-CSEDLPS

Showing 1-15 of 70 Questions

Question #1

What is external cache as it relates to the RSA DLP SUITE?

A. The results from the last scan of a target file share or endpoint

B. Area of memory that holds fingerprinted documents. This speeds up the process of scanning

C. A holding area on the interceptor appliance that holds the most frequently used email attachments

D. An optional add-on hardware option for the Sensor appliance to enable it speed up content analysis

Question #2

Which the following is NOT true about the Enterprise Coordinator?

A. Harvests Results

B. Creates, Deploys, and manages Site coordinators

C. Can have 50 Enterprise Coordinators per Enterprise Manager

D. Can be installed on the same machine as Enterprise Manager

Question #3

Documents that contain sensitive information that violate policy are detected on an end
user computer are classified as what type of events/incidents?

A. DLP incidents and events

B. Network incidents and events

C. Endpoint incidents and events

D. Datacenter incidents and events

Question #4

Which of the following endpoint actions can NOT be blocked by the DLP Endpoint Enforce
when sensitive information is detected?

A. Screen capture

B. Printing to a printer

C. Copying to a floppy disk

D. Copying to a USB storage device

Question #5

A policy can be assigned to be active only for members of a specific LDAP group.

A. True

B. False

Question #6

Which of the following is NOT a factor when creating content rules?

A. Counts

B. Weighting

C. Exclusion Rules

D. Correct Spelling and Grammar

Question #7

Which of the following is NOT a main component of the RSA DLP Suite?

A. RSA DLP Network

B. RSA DLP Endpoint

C. RSA DLP Datacenter

D. RSA DLP Security Center

Question #8

When you create a new policy (Not from templates) the policy is already configured with
content blades and has incident handling and notifications options set appropriately and do
not require any configuration.

A. True

B. False

Question #9

Which of the following types of LDAP databases can be synchronized with the RSA DLP
Suite to use the existing users and groups that already exist inside a company?

A. Any standard LDAP database

B. Microsoft Active Directory 2000

C. Microsoft Active Directory 2003

D. Microsoft Active Directory Application Mode

E. All of the above

Question #10

The RSA DLP Network Sensor has to have access to an entire TCP transmission. If only a
partial transmission is captured, the session is not analyzed.

A. True

B. False

Question #11

The RSA DLP Suite comes pre-installed on Windows based Appliance PCs. The customer
does not need to supply any servers for installation of the full DLP product suite.

A. True

B. False

Question #12

Incidents that are created as the result of RSA DLP agent scan on an end user's computer
will be categorized as Datacenter Incidents.

A. True

B. False

Question #13

Which of the following is NOT a troubleshooting program that comes with the DLP

A. Subnets

B. ICAPstats

C. checkrelay

D. checkreply

Question #14

An endpoint scan is run on Dave's laptop. The following is found:
10 occurrences of PII
15 occurrences of company confidential documents
20 customer records that contain credit card numbers or social security numbers.
How many incidents will be reported by the DLP Suite?

A. 1

B. 10

C. 15

D. 20

E. We cannot determine that from the information provided. It depends on the policy settings.

Question #15

The Bluecoat proxy server from Bluecoat is an optional component that must be used to
http traffic.

A. True

B. False