[Free] 2018(Jan) EnsurePass Examcollection IBM P2150-739 Dumps with VCE and PDF 11-20

Ensurepass.com : Ensure you pass the IT Exams
2018 Jan IBM Official New Released P2150-739
100% Free Download! 100% Pass Guaranteed!

IBM InfoSphere Guardium Technical Mastery Test v2

Question No: 11

Which of the following is not a valid termination action for an extrusion rule?

  1. Termination actions are not available for extrusion rules.

  2. S-TAP Terminate.

  3. Termination actions are available for extrusion rules, however these are executed by the database management system and not Guardium.

  4. S-GATE Terminate.

Answer: D

Question No: 12

A developer has recently created a temporary database to test her new human resources management application. To test it in a production-like environment she copies the MANAGERS table from the production server into her test database. This table includes sensitive personal information. Which of the following will help the database auditor identify this new database?

  1. The database auditor can be notified by e-mail using Guardium#39;s scheduled database auto-discovery feature.

  2. The developer must create the new database using Guardium#39;s Application Events API, which would show up on the Guardium interface as a change report.

  3. The database auditor can be notified of new sensitive data by a previously scheduled sensitive object discovery job.

  4. The auditor cannot incorporate the new environment into Guardium unless she is given the exact details of the database and host system.

Answer: A

Question No: 13

What is Guardium#39;s Database Protection Subscription Service?

  1. A service that may be purchased separately in order to enable Guardium to safeguard database management systems other than Sybase AES.

  2. A subscription to the latest updates for the various Guardium product components.

  3. An additional package required for the vulnerability and threat management solutions to integrate with CAS.

  4. A service that provides the Guardium instance with quarterly updates to its built-in assessment tests, so the assessment is up-to-date with industry best practices and new vulnerabilities.

Answer: D

Question No: 14

Which of the following is true about Guardium#39;s entitlement reports?

  1. Guardium includes a set of built-in entitlement report definitions for all supported databases.

  2. Guardium does not offer standard built-in entitlement reports and the user must create these reports based on their database specifications.

  3. Guardium includes Oracle entitlement reports as a standard feature, however reports for all other database engines (ie. IBM DB2) must be manually created.

  4. Guardium#39;s entitlement reporting requires a monthly subscription service.

Answer: A

Question No: 15

What does quot;Auditingquot; mean in Guardium?

  1. The process of logging monitored database activity as defined by the installed security policy, creation of reports from logged data based on audit requirements, and review of the report as part of an audit process.

  2. Applying a group of data server configuration changes that allow the different versions of Guardium to safeguard sensitive information.

  3. The granting of every available privilege to a few selected users so they can take over

    several servers using the Guardium UI and audit these servers.

  4. Importing a set of special stored procedures into many data servers to determine the security state of the database configurations.

Answer: A

Question No: 16

How is authentication and encryption implemented between collectors, aggregators and the Central Policy Manager in a multi-tier Guardium environment?

  1. Using an encrypted file containing the system password that must be copied to the Central Policy Manager and collectors.

  2. A System Shared Secret is specified through the GUI for each collector and the Central Policy Manager.

  3. The Central Policy Manager scans the network for Guardium collectors and performs a security handshake with each appliance.

  4. The communication between collectors and the Central Policy Manager is based on unsecured network packets.

Answer: B

Question No: 17

Which of the following best describes the role of the aggregator in a Guardium environment?

  1. The aggregator is a Guardium appliance that collects and consolidates information from multiple collectors to a single Aggregation Server, allowing for reporting across the enterprise.

  2. The aggregator is the Guardium appliance that communicates with mainframes.

  3. The aggregator is a Guardium appliance that allows a collector and a Central Policy Manager to communicate and is required in multi-collector environments.

  4. The aggregator is another name for the Central Policy Manager.

Answer: A

Question No: 18

Which of the following items cannot be identified using database auto-discovery?

  1. IP address of servers with a database instance.

  2. Port(s) on which a database is communicating on each server.

  3. List of databases for each database instance.

  4. Type of database running on each server.

Answer: C

Question No: 19

What is the purpose of Guardium#39;s Application Events API?

  1. Adding application event data, such as user ID, event type and number, to the SQL statements executed between an API no-op call and its release signal.

  2. Being part of the pattern matching engine that evaluates statements for membership in a specific security policy.

  3. Enabling non-supported database engines to be used with Guardium.

  4. The Application Events API is used to increase the speed at which Guardium processes statements.

Answer: A

Question No: 20

Which of the following is often required to ensure that Guardium can identify a user#39;s credentials through the Stored Procedure Monitoring feature?

  1. A database system-specific plug-in that attaches on to the collector#39;s engine.

  2. A well-configured custom identification procedure mapping.

  3. A credential replication routine available for free from Guardium.

  4. Reconfiguring the security policy so the appliance knows all the application servers that contact the data server.

Answer: B

100% Ensurepass Free Download!
Download Free Demo:P2150-739 Demo PDF
100% Ensurepass Free Guaranteed!
P2150-739 Dumps

EnsurePass ExamCollection Testking
Lowest Price Guarantee Yes No No
Up-to-Dated Yes No No
Real Questions Yes No No
Explanation Yes No No
Free VCE Simulator Yes No No
Instant Download Yes No No

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.