Title of Exam: 642-513 HIPS (Securing Hosts Using Cisco Security Agent) Exam
Who is the vendor for 642-513? CISCO When completing 642-513 you would have earned credit towards : Cisco Certified Security Professional also known as CCSP. 642-513 Exam Description The 642-513 HIPS exam is the only exam required to achieve a CCSP (Cisco Certified Security Professional) certification. Once a student has successfully passed the Cisco 642-513 HIPS exam you will be more than able to describing, configure, and verify the Cisco Security Agent product. A main concern of the Cisco 642-513 HIPS exam, which should be is heavily emphasized Cisco Training Guides. What are the fields covered by 642-513? The 642-513 Securing Hosts Using Cisco Security Agent examination covers broad areas which are discussed in detail below: Exam area 1 Describe and deploy the CSA and CSA MC products Explain the concept of network defense in depth Describe Cisco Security Agent architecture Describe the life cycle of an attack Explain how Cisco Security Agent protects against attacks Identify the CSA MC and CSA system requirements Identify the administration workstation requirements Install the CSA MC Configure basic settings on the CSA MC Install the CSA using a default group Exam area 2 Use CSA MC to configure groups, manage hosts, and build policies Describe various components of the menu bar and its function in the CSA MC interface Create, save, and delete data on the CSA MC Create groups to ease host management and security policy deployment Build Agent kits for the newly created groups View host status and modify host configuration Distribute software updates to hosts Discuss components of a policy Configure policies and rule modulesCisco 642-513 Certification - Sponsored by Real-Exams - 642-513Exam area 3 Use CSA MC to configure rules Describe the basics of rule construction and functionality Configure rules common to Windows and UNIX systems Configure Windows-Only rules Configure UNIX-Only rules Describe the individual rules you can add to your policies that allow CSA MC to categorize processes and correlate events across multiple systems Describe and configure the system API Control Rule Describe and configure the Network Shield Rule Describe and configure the Buffer Overflow Control Rule Describe and configure the Email Worm Protection Rule module Describe and configure the Installation Applications Policy Describe and configure Global Event Correlation Exam area 4 Define application classes and work with variables Explain the use of application classes in creating security policies Discuss the preconfigured application classes included in the CS AMC Configure a static application class Create a dynamic application class and an application-builder rule Discuss how events sets are used to ease administration of security policies Configure data, file and network address sets Create registry, COM component and network services sets Use the COM extraction utility to gather PROGIDs and CLSIDs for the software installed on a system Configure Query Settings variables to be used with Query rules Exam area 5 Use CSA Analysis and define and generate reports Understand and configure application deployment investigation Understand and configure product associations for application deployment investigation Configure and run application deployment reports Understand and configure application behavior investigation Understand and use behavior analysis reports Import and use behavior analysis rule modules Explain the features of the Event Log and Event Monitor Configure filtering of events for logging, reports, and alerts Create event-based alerts Generate reports on events selected by sorting criteria Difficulty rating : this examination rates 3 on a scale of 1 - 5 difficulty rating. How long do I have to complete 642-513? 75 minutes How many questions will I be required to answer? 55 - 65 questions How much will 642-513 cost? 125 USD - Contact the Examination Test Centre directly for information regarding course availability, registration information and cost. Remember that costs may vary from vendor to vendor and from examination to examination. 642-513 Study Tips: Testking has several products that include excellent materials that will aid in preparation for this exam. Their materials include detailed 640-513 study notes and guides, questions and answers with detailed explanations, even practice tests, which were compiled by experts in their respective field. For this examination you can check 640-513 Test King and the 640-513 practice tests. Internet websites like the Testking and the mcsebraindumps offer a number of study aids for the 642-513 HIPS exam, including the 642-513 Study Guide, the 642-513 Study Notes and the 642-821 Practice Exam. Other Cisco Training includes the Cisco Bootcamp and the 642-513 Braindumps. Cisco 642-513 Certification - Sponsored by Real-Exams - 642-513
|
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Cisco Study Guides - Contact Us - Advertise © 2006 Cisco-Study-Guides.com |