| Exam Code/Number: | 250-441Join the discussion |
| Exam Name: | Administration of Symantec Advanced Threat Protection 3.0 |
| Certification: | Symantec |
| Question Number: | 96 |
| Publish Date: | May 30, 2026 |
|
Rating
100%
|
|
An Incident Responder runs an endpoint search on a client group with 100 endpoints. After one day, the responder sees the results for 90 endpoints.
What is a possible reason for the search only returning results for 90 of 100 endpoints?
Which two steps must an Incident Responder take to isolate an infected computer in ATP? (Choose two.)
An Incident responder added a files NDS hash to the blacklist.
Which component of SEP enforces the blacklist?
What is the role of Cynic within the Advanced Threat Protection (ATP) solution?
Which two tasks should an Incident Responder complete when recovering from an incident? (Choose two.)