Netskope NSK200 - Netskope Certified Cloud Security Integrator (NCCSI) Exam
Page: 3 / 13
Total 61 questions
Question #11 (Topic: Exam A)
You are troubleshooting an issue with Microsoft where some users complain about an issue accessing OneDrive and SharePoint Online. The configuration has the Netskope client deployed and active for most users, but some Linux machines are routed to Netskope using GRE tunnels. You need to disable inspection for all users to begin troubleshooting the issue.
In this scenario, how would you accomplish this task?
In this scenario, how would you accomplish this task?
A. Create a Real-time Protection policy to isolate Microsoft 365.
B. Create a Do Not Decrypt SSL policy for the Microsoft 365 App Suite.
C. Create a steering exception for the Microsoft 365 domains.
D. Create a Do Not Decrypt SSL policy for OneDrive.
Answer: B
Question #12 (Topic: Exam A)
Your company has many users that are remote and travel often. You want to provide the greatest visibility into their activities, even while traveling.
Using Netskope, which deployment method would be used in this scenario?
Using Netskope, which deployment method would be used in this scenario?
A. Use proxy chaining.
B. Use a Netskope client.
C. Use an IPsec tunnel.
D. Use a GRE tunnel.
Answer: B
Question #13 (Topic: Exam A)
The risk team at your company has determined that traffic from the sales team to a custom Web application should not be inspected by Netskope. All other traffic to the Web application should continue to be inspected.
In this scenario, how would you accomplish this task?
In this scenario, how would you accomplish this task?
A. Create a Do Not Decrypt Policy using User Group and Domain in the policy page.
B. Create a Do Not Decrypt Policy using Application in the policy page and a Steering Exception for Group.
C. Create a Do Not Decrypt Policy using Destination IP and Application in the policy page.
D. Create a Do Not Decrypt Policy using Source IP and Application in the policy page.
Answer: A
Question #14 (Topic: Exam A)
Your organization has a homegrown cloud application. You are required to monitor the activities that users perform on this cloud application such as logins, views, and downloaded files. Unfortunately, it seems Netskope is unable to delete, these activities by default.
How would you accomplish this goal?
How would you accomplish this goal?
A. Enable access to the application with Netskope Private Access.
B. Ensure that the cloud application is added as a steering exception.
C. Ensure that the application is added to the SSL decryption policy.
D. Create a new cloud application definition using the Chrome extension.
Answer: D
Question #15 (Topic: Exam A)
You are implementing tenant access security and governance controls for privileged users. You want to start with controls that are natively available within the Netskope Cloud Security Platform and do not require external third-party integration.
Which three access controls would you use in this scenario? (Choose three.)
Which three access controls would you use in this scenario? (Choose three.)
A. IP allow listing to control access based upon source IP addresses.
B. Login attempts to set the number of failed attempts before the admin user is locked out of the UI.
C. Applying predefined or custom roles to limit the admin's access to only those functions required for their job.
D. Multi-factor authentication to verify a user's authenticity.
E. History-based access control based on past security actions.
Answer: ABC