Multiple Choice
Which two steps must an Incident Responder take to isolate an infected computer in ATP? (Choose two.)
A) Close any open shares
B) Identify the threat and understand how it spreads
C) Create subnets or VLANs and configure the network devices to restrict traffic
D) Set executables on network drives as read only
E) Identify affected clients
Correct Answer:

Verified
Correct Answer:
Verified
Q109: You are planning a relayout for a
Q110: Which process is acceptable for validating domain
Q111: A customer has information about a malicious
Q112: After installing Veritas Enterprise Administrator, you start
Q113: An Incident Responder needs to remediate a
Q115: Which installation package should an administrator use
Q116: Where can an administrator locate the "Pen
Q117: What does it mean if WebPulse returns
Q118: Which Symantec product is best suited for
Q119: A volume called datavol in the disk