McAfee Intel Security Certified Product Specialist-SIEM - MA0-104 Exam Practice Test
One or more storage allocations, which together specify a total amount of storage, coupled with a data
retention time that specifies the maximum number of days a log is to be stored, is known as a
retention time that specifies the maximum number of days a log is to be stored, is known as a
Correct Answer: C
Vote an answer
Internet perimeter firewall data-sources provide excellent visibility into
Correct Answer: D
Vote an answer
Alarms using field match as the condition type allow for selected Actions to be taken when the Alarm
condition is met. Which of the following McAfee ePolicy Orchestrator (ePO) Actions can be selected when
creating such Alarm?
condition is met. Which of the following McAfee ePolicy Orchestrator (ePO) Actions can be selected when
creating such Alarm?
Correct Answer: C
Vote an answer
Reports can be created by selecting the ESM System Properties window, the Reports Icon in the top right
of the ESM screen or by which of the following other method selecting the ESM System Properties
window, the Reports Icon in the top right of the ESM screen or by which of the following other methods
within Alarm Creation?
of the ESM screen or by which of the following other method selecting the ESM System Properties
window, the Reports Icon in the top right of the ESM screen or by which of the following other methods
within Alarm Creation?
Correct Answer: B
Vote an answer
Malware performing a network enumeration scan will be visible at the McAfee SIEM as
Correct Answer: D
Vote an answer
To correlate known vulnerabilities to devices that are currently exposed to such vulnerabilities, which of
the following must be selected on the Receiver?
the following must be selected on the Receiver?
Correct Answer: B
Vote an answer
The McAfee Enterprise Log Manager (ELM) offers three levels of compression (Low, Medium, and High).
By default, the ELM compression level is set to Low. Which of the following is the compression ratio for
the Medium level?
By default, the ELM compression level is set to Low. Which of the following is the compression ratio for
the Medium level?
Correct Answer: A
Vote an answer