Symantec 250-587 Exam Overview:
| Certification Vendor: | Broadcom (Symantec) |
|---|---|
| Exam Name: | Symantec Data Loss Prevention 16.x Administration Technical Specialist |
| Exam Number: | 250-587 |
| Available Languages: | English |
| Exam Format: | Multiple choice |
| Sample Questions: | Symantec 250-587 Sample Questions |
| Exam Way: | Proctored exam (online or authorized testing center depending on region) |
| Pre Condition: | Recommended experience with Symantec (Broadcom) Data Loss Prevention 16.x administration and enterprise security concepts |
Symantec 250-587 Exam Syllabus Topics:
| Section | Objectives |
|---|---|
| Symantec DLP Architecture and Components | - Detection and enforcement components - System architecture overview |
| Incident Management and Response | - Incident detection and workflow - Incident review and remediation |
| Monitoring and Reporting | - Report generation and analysis - System monitoring and alerts |
| Policy Management | - Data identification and classification rules - Creating and managing DLP policies |
| Installation and Configuration | - Initial system setup and configuration - Deployment planning and prerequisites |
| System Maintenance and Troubleshooting | - Troubleshooting common issues - Performance tuning and optimization |
Symantec Data Loss Prevention 16.x Administration Technical Specialist Sample Questions:
Question 1
Where should an administrator set the debug levels for an Endpoint Agent?
A. Setting the log level within the Agent Overview
B. Setting the log level within the Agent List
C. Advanced server settings within the Endpoint server
D. Advanced configuration within the Agent settings
Question 2
Which two (2) DLP products support Optical Character Recognition (OCR)? (Choose two.)
A. Endpoint Discover
B. Network Prevent for Email
C. Network Discover
D. Information Centric Analytics
E. Endpoint Prevent
Question 3
An administrator is unable to log in to the Enforce management console as "sysadmin". Symantec DLP is configured to use Active Directory authentication. The administrator is a member of two roles: "sysadmin" and "remediator." How should the administrator log in to the Enforce console with the "sysadmin" role?
A. username\sysadmin
B. domain\username
C. sysadmin\username
D. sysadmin\username@domain
Question 4
Which two detection technology options run on the DLP agent? (Choose two.)
A. Described Content Matching (DCM)
B. Optical Character Recognition (OCR)
C. Indexed Document Matching (IDM)
D. Form Recognition
E. Directory Group Matching (DGM)
Question 5
What should an incident responder select in the Enforce management console to remediate multiple incidents simultaneously?
A. Automated response on an Incident List report
B. Smart response on an Incident List report
C. Automated Response on the Incident Snapshot page
D. Smart response on the Incident page
Solutions:
| Question 1 Answer: A | Question 2 Answer: A,B | Question 3 Answer: B | Question 4 Answer: C,D | Question 5 Answer: C |

We're so confident of our products that we provide no hassle product exchange.


By Katherine


