View Full Fortinet FCP_FMG_AD-7.6 Exam Dumps and Practice Test Dumps. Question 81 Which FortiManager feature allows administrators to apply a policy or object consistently across multiple ADOMs? Device Manager Revision History Global Database ADOM FortiGuard Cache Correct Answer: 3 Explanation The Global Database ADOM provides a centralized location for shared policies and objects that […]
View Full Fortinet FCP_FMG_AD-7.6 Exam Dumps and Practice Test Dumps. Question 61 A FortiManager administrator wants to allow a junior administrator to modify firewall policies but prevent that administrator from changing system settings. Which approach provides this separation? Assign a restricted administrative profile Create a second FortiManager database Disable the ADOM Remove the administrator […]
View Full Fortinet FCP_FMG_AD-7.6 Exam Dumps and Practice Test Dumps. Question 41 During the initial deployment of FortiManager, an administrator needs to configure basic system settings before adding managed devices. Which component helps guide the administrator through the initial setup process? Policy Package Setup Wizard Device Group FortiView Correct Answer: 2 Explanation The FortiManager […]
View Full Fortinet FCP_FMG_AD-7.6 Exam Dumps and Practice Test Dumps. Question 21 Which FortiManager feature allows an administrator to execute a predefined set of CLI commands on managed FortiGate devices? Policy Package ADOM CLI Script Device Group Correct Answer: 3 Explanation A CLI Script in FortiManager allows administrators to create and execute CLI commands […]
View Full Fortinet FCP_FMG_AD-7.6 Exam Dumps and Practice Test Dumps. Question 1 Which FortiManager feature is primarily used to manage and apply configuration changes to multiple FortiGate devices from a centralized location? Policy Packages FortiAnalyzer Security Fabric FortiToken Correct Answer: 1 Explanation FortiManager uses Policy Packages to centrally manage and deploy firewall policies and […]
View Full Amazon AWS Certified Security – Specialty SCS-C03 Exam Dumps and Practice Test Dumps. Question 381 A company wants to prevent administrators from disabling required CloudTrail logging in member accounts. Which AWS Organizations capability can provide a preventive governance control? Amazon Detective AWS Resource Access Manager AWS Security Hub AWS Organizations SCP Correct […]
View Full Amazon AWS Certified Security – Specialty SCS-C03 Exam Dumps and Practice Test Dumps. Question 361 A company wants to prevent developers from creating resources in AWS Regions that have not been approved by the security team. Which organization-level control is most appropriate? IAM Access Analyzer AWS Organizations SCP Amazon Macie AWS Certificate […]
View Full Amazon AWS Certified Security – Specialty SCS-C03 Exam Dumps and Practice Test Dumps. Question 341 A company wants to ensure that a sensitive S3 bucket cannot be accessed from outside its AWS Organization. Which policy condition can help enforce this requirement? aws:SourceIp aws:PrincipalOrgID aws:RequestedRegion aws:SourceVpce Correct Answer: 2 Explanation The aws:PrincipalOrgID condition […]
View Full Amazon AWS Certified Security – Specialty SCS-C03 Exam Dumps and Practice Test Dumps. Question 321 A company wants to prevent users from accidentally sharing an encrypted EBS snapshot with another AWS account. Which security control should be reviewed? EBS encryption by default EC2 instance metadata options EBS snapshot sharing permissions AWS WAF […]
View Full Amazon AWS Certified Security – Specialty SCS-C03 Exam Dumps and Practice Test Dumps. Question 301 A security team needs to verify that CloudTrail log files stored in Amazon S3 have not been modified after delivery. Which CloudTrail capability should the team use? CloudTrail Insights Advanced event selectors Event history Log file integrity […]
View Full Amazon AWS Certified Security – Specialty SCS-C03 Exam Dumps and Practice Test Dumps. Question 281 Which AWS service can help identify whether an IAM policy grants permissions that are broader than necessary based on policy analysis? Amazon GuardDuty IAM Access Analyzer AWS Shield Amazon Macie Correct Answer: 2 Explanation IAM Access Analyzer […]
View Full Amazon AWS Certified Security – Specialty SCS-C03 Exam Dumps and Practice Test Dumps. Question 261 Which AWS service can help monitor DNS queries made by resources within a VPC for security analysis? AWS CloudTrail Amazon Inspector Route 53 Resolver query logging AWS Audit Manager Correct Answer: 3 Explanation Route 53 Resolver query […]
View Full Amazon AWS Certified Security – Specialty SCS-C03 Exam Dumps and Practice Test Dumps. Question 241 Which IAM feature can restrict the permissions available during a specific role session without changing the role’s identity-based policy? Resource-based policy Session policy Security group SCP Correct Answer: 2 Explanation An IAM session policy can further restrict […]
View Full Amazon AWS Certified Security – Specialty SCS-C03 Exam Dumps and Practice Test Dumps. Question 221 Which AWS service is specifically designed to store and query CloudTrail events using an event data store? Amazon Athena Amazon OpenSearch Service AWS CloudTrail Lake Amazon CloudWatch Correct Answer: 3 Explanation AWS CloudTrail Lake provides a managed […]
View Full Amazon AWS Certified Security – Specialty SCS-C03 Exam Dumps and Practice Test Dumps. Question 201 Which AWS service provides a managed, centralized repository for compliance reports and agreements that can support an organization’s audit process? Amazon Detective AWS Artifact Amazon Inspector AWS Shield Correct Answer: 2 Explanation AWS Artifact provides on-demand access […]