IBM C2150-606 - IBM Security Guardium V10.0 Administration Exam

Question #6 (Topic: )
A Guardium administrator manages an environment containing four standalone Collectors.
The administrator has been asked to provide a weekly report showing all Data Manipulation
Language (DML) SQL statements performed by all database administrators on all
databases. The administrator does not want to run the report on each Collector.
What should the administrator do to simplify this task and run the report in only one place
every week?
A. Replace the 4 Collectors with one Aggregator. B. Create an Enterprise Report on one Collector combining the data. C. Add a Guardium Aggregator to the environment. Create and run the report on the Aggregator. D. install a Configuration Auditing System (CAS) on each Database Server. Configure the CAS Client to send data to a Collector. Create and run the report on the Collector.
Answer: C
Question #7 (Topic: )
A company has recently acquired Guardium software entitlement to help meet their
upcoming PCI-DSS audit requirements. The company is entitled to Standard Guardium
DAM offering.
Which of the following features can the Guardium administrator use with the current
entitlement? (Select two.)
A. Run Vulnerability Assessment reports B. Generate audit reports using PCI-DSS Accelerator C. Block and quarantine an unauthorized database connection D. Mask sensitive PCI-DSS information from web application interface E. Log and alert all database activities that access PCI-DSS Sensitive Objects.
Answer: A,B
Question #8 (Topic: )
AGuardium administrator needs to upgrade BUNDLE-STAP on a Linux server to the latest
version using GIM. What parameter should the administrator set to ensure the upgrade will
not require a reboot of the server?
A. KTAP_ENABLED=1 B. KTAP_NO_ROLLBACK=1 C. KTAP_LIVE_UPDATE=Y D. KTAP_ALLOW_MODULE_COMBOS=Y
Answer: C
Question #9 (Topic: )
AGuardium environment is set up to send daily reports to users. The users are complaining
that their report has not been delivered to their inbox for the past week. What is the first
action the Guardium administrator should take in order to diagnose the problem?
A. Open a ticket with IBM Support. B. Pause the User Portal Sync process. C. Check in the Aggregation/Archive log. D. Check in the Scheduled Job Exceptions.
Answer: D
Question #10 (Topic: )
A Guardium administrator installed an S-TAP but is not seeing any data in reports on the
collector. The administrator discovered that an Inspection Engine is not configured for that
S-TAP.
What is an Inspection Engine?
A. A piece of software residing on the Collectors. B. Another software to be installed on the Database server. C. The same thing as the policy and it runs on the S-TAP to inspect the traffic in real-time. D. A set of parameters needed for the S-TAP to define how to monitor traffic for a particular database instance on a server.
Answer: C
Download Exam
Page: 2 / 11
Total 55 questions