Pass Your EPM-DEF Dumps as PDF Updated on 2024 With 62 Questions
CyberArk EPM-DEF Real Exam Questions and Answers FREE
NEW QUESTION # 26
Which programming interface enables you to perform activities on EPM objects via a REST Web Service?
- A. Mac Credential Provider SDK
- B. EPM Web Services SDK
- C. Application Password SDK
- D. Java password SDK
Answer: B
NEW QUESTION # 27
How does a Trusted Source policy affect an application?
- A. Applications will be allowed to run always in elevated mode.
- B. Applications will be allowed to run and will only elevate if required.
- C. Application from the defined trusted sources must be configured on a per application basis, in order to define run and elevation parameters.
- D. Applications will be allowed to run and will inherit the process token from the EPM agent.
Answer: C
NEW QUESTION # 28
CyberArk's Privilege Threat Protection policies are available for which Operating Systems? (Choose two.)
- A. Linux
- B. Windows Servers
- C. Windows Workstations
- D. MacOS
Answer: B,C
NEW QUESTION # 29
An EPM Administrator needs to create a policy to allow the MacOS developers elevation to an application.
What type of policy should be used?
- A. Elevate MacOS Policy
- B. Elevate Trusted Applications If Necessary Advanced Policy
- C. Elevate Application Group
- D. Developer Applications Application Group
Answer: B
NEW QUESTION # 30
When enabling Threat Protection policies, what should an EPM Administrator consider? (Choose two.)
- A. Certain Threat Protection policies apply for specific applications not found on all machines
- B. Threat Protection features are not available in all regions.
- C. Threat Protection policies requires an additional agent to be installed.
- D. Some Threat Protection policies are applicable only for Windows Servers as opposed to Workstations.
Answer: A,D
NEW QUESTION # 31
How does CyberArk EPM's Ransomware Protection feature monitor for Ransomware Attacks?
- A. It compares known ransomware signatures retrieved from virus databases.
- B. It sandboxes the suspected ransomware and applies heuristics.
- C. It monitors for any unauthorized access to specified files.
- D. It performs a lookup of file signatures against VirusTotal's database.
Answer: B
NEW QUESTION # 32
An EPM Administrator would like to exclude an application from all Threat Protection modules. Where should the EPM Administrator make this change?
- A. Privilege Threat Protection under Policies.
- B. Protect Against Ransomware under Default Policies.
- C. Authorized Applications under Application Groups.
- D. Threat Protection under Agent Configurations.
Answer: C
NEW QUESTION # 33
Which setting in the agent configuration controls how often the agent sends events to the EPM Server?
- A. Condition Timeout
- B. Heartbeat Timeout
- C. Policy Update Rate
- D. Event Queue Flush Period
Answer: D
NEW QUESTION # 34
Match the Trusted Source to its correct definition:
Answer:
Explanation:

NEW QUESTION # 35
For the CyberArk EPM Threat Deception Credential Lure feature, what is the recommendation regarding the username creation?
- A. The username should match the built-in local Administrator.
- B. The username should have a strong password associated.
- C. The username should match to an existing account.
- D. The username should not match to an existing account.
Answer: D
NEW QUESTION # 36
When blocking applications, what is the recommended practice regarding the end-user UI?
- A. Hide the CyberArk EPM Agent icon in the system tray.
- B. Show a block prompt for blocked applications.
- C. Enable the Default Deny policy.
- D. Show no prompts for blocked applications.
Answer: B
NEW QUESTION # 37
What are the policy targeting options available for a policy upon creation?
- A. EPM Sets, Computers in AD Security Groups, AD Users and AD Security Groups
- B. Computers in this set, Computers in AD Security Groups, Users and Groups
- C. OS Computers, EPM Sets, AD Users
- D. AD Users and Groups, Computers in AD Security Groups, Servers
Answer: A
NEW QUESTION # 38
An EPM Administrator is looking to enable the Threat Deception feature, under what section should the EPM Administrator go to enable this feature?
- A. Policy Audit
- B. Threat Protection Inbox
- C. Threat Intelligence
- D. Policies
Answer: D
NEW QUESTION # 39
A particular user in company ABC requires the ability to run any application with administrative privileges every day that they log in to their systems for a total duration of 5 working days.
What is the correct solution that an EPM admin can implement?
- A. An EPM admin can create a secure token for the end user's computer and instruct the end user to open an administrative command prompt and run the command vfagent.exe -UseToken <securetoken_value>
- B. An EPM admin can create an authorization token for each application needed by running:
EPMOPAGtool.exe -command gentoken -targetUser <username> -filehash <file hash> -timeLimit 120
-action run - C. An EPM admin can generate a JIT access and elevation policy with temporary access timeframe set to
120 hours and Terminate administrative processes when the policy expires option unchecked - D. An EPM admin can generate a JIT access and elevation policy with temporary access timeframe set to
120 hours
Answer: C
NEW QUESTION # 40
A company is looking to manage their Windows Servers and Desktops with CyberArk EPM. Management would like to define different default policies between the Windows Servers and Windows Desktops.
What should the EPM Administrator do?
- A. Create a separate Set for Windows Servers and Windows Desktops.
- B. Create Advanced Policies to apply different policies between Windows Servers and Windows Desktops.
- C. In the Default Policies, exclude either the Windows Servers or the Windows Desktops.
- D. CyberArk does not recommend installing EPM Agents on Windows Servers.
Answer: B
NEW QUESTION # 41
What are the predefined application groups?
- A. Elevate, Allow, Block, Developer Applications
- B. Developer group, Administrator group
- C. Run as Administrator, Run as Developer, Block
- D. Block Only
Answer: A
NEW QUESTION # 42
What type of user can be created from the Threat Deception LSASS Credential Lures feature?
- A. It does not create any users
- B. A local administrator user
- C. A domain admin user
- D. A standard user
Answer: D
NEW QUESTION # 43
What unauthorized change can CyberArk EPM Ransomware Protection prevent?
- A. Website Data
- B. Windows Registry Keys
- C. Local Administrator Passwords
- D. Certificates in the Certificate Store
Answer: D
NEW QUESTION # 44
If you want to diagnose agent EPM agent connectivity issues, what is the agent executable that can be used from the command line?
- A. vf_agent.exe
- B. epm_agent.exe
- C. db_agent.exe
- D. vault_agent.exe
Answer: B
NEW QUESTION # 45
An EPM Administrator would like to include a particular file extension to be monitored and protected under Ransomware Protection. What setting should the EPM Administrator configure to add the extension?
- A. Default Policies
- B. Files to be Ignored Always
- C. Anti-tampering Protection
- D. Authorized Applications (Ransomware Protection)
Answer: D
NEW QUESTION # 46
Where can you view CyberArk EPM Credential Lures events?
- A. Threat Protection Inbox
- B. Policy Audit
- C. Events Management
- D. Application Catalog
Answer: A
NEW QUESTION # 47
......
Pass CyberArk EPM-DEF Exam Info and Free Practice Test: https://www.suretorrent.com/EPM-DEF-exam-guide-torrent.html
New 2024 Latest Questions EPM-DEF Dumps - Use Updated CyberArk Exam: https://drive.google.com/open?id=1133lpXVBP9iIzBaAo__yyYIdYn6iONv6