Netskope NSK200 Exam Practice Questions (P. 3)
- Full Access (61 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #11
You are troubleshooting an issue with Microsoft where some users complain about an issue accessing OneDrive and SharePoint Online. The configuration has the Netskope client deployed and active for most users, but some Linux machines are routed to Netskope using GRE tunnels. You need to disable inspection for all users to begin troubleshooting the issue.
In this scenario, how would you accomplish this task?
In this scenario, how would you accomplish this task?
- ACreate a Real-time Protection policy to isolate Microsoft 365.
- BCreate a Do Not Decrypt SSL policy for the Microsoft 365 App Suite.
- CCreate a steering exception for the Microsoft 365 domains.
- DCreate a Do Not Decrypt SSL policy for OneDrive.
Correct Answer:
B
B
send
light_mode
delete
Question #12
Your company has many users that are remote and travel often. You want to provide the greatest visibility into their activities, even while traveling.
Using Netskope, which deployment method would be used in this scenario?
Using Netskope, which deployment method would be used in this scenario?
- AUse proxy chaining.
- BUse a Netskope client.
- CUse an IPsec tunnel.
- DUse a GRE tunnel.
Correct Answer:
B
B
send
light_mode
delete
Question #13
The risk team at your company has determined that traffic from the sales team to a custom Web application should not be inspected by Netskope. All other traffic to the Web application should continue to be inspected.
In this scenario, how would you accomplish this task?
In this scenario, how would you accomplish this task?
- ACreate a Do Not Decrypt Policy using User Group and Domain in the policy page.
- BCreate a Do Not Decrypt Policy using Application in the policy page and a Steering Exception for Group.
- CCreate a Do Not Decrypt Policy using Destination IP and Application in the policy page.
- DCreate a Do Not Decrypt Policy using Source IP and Application in the policy page.
Correct Answer:
A
A
send
light_mode
delete
Question #14
Your organization has a homegrown cloud application. You are required to monitor the activities that users perform on this cloud application such as logins, views, and downloaded files. Unfortunately, it seems Netskope is unable to delete, these activities by default.
How would you accomplish this goal?
How would you accomplish this goal?
- AEnable access to the application with Netskope Private Access.
- BEnsure that the cloud application is added as a steering exception.
- CEnsure that the application is added to the SSL decryption policy.
- DCreate a new cloud application definition using the Chrome extension.
Correct Answer:
D
D
send
light_mode
delete
Question #15
You are implementing tenant access security and governance controls for privileged users. You want to start with controls that are natively available within the Netskope Cloud Security Platform and do not require external third-party integration.
Which three access controls would you use in this scenario? (Choose three.)
Which three access controls would you use in this scenario? (Choose three.)
- AIP allow listing to control access based upon source IP addresses.
- BLogin attempts to set the number of failed attempts before the admin user is locked out of the UI.
- CApplying predefined or custom roles to limit the admin's access to only those functions required for their job.
- DMulti-factor authentication to verify a user's authenticity.
- EHistory-based access control based on past security actions.
Correct Answer:
ABC
ABC
send
light_mode
delete
All Pages