CheckPoint 156-590 Exam Overview:
| Certification Vendor: | Check Point |
| Exam Name: | Check Point Certified Threat Prevention Specialist (CTPS) Exam |
| Exam Number: | 156-590 |
| Available Languages: | English |
| Exam Duration: | 90 minutes |
| Exam Format: | Multiple choice, Scenario-based questions |
| Related Certifications: | Check Point Certified Security Administrator (CCSA) Check Point Certified Security Expert (CCSE) |
| Certificate Validity Period: | 2 years |
| Recommended Training: | Check Point Threat Prevention Administration Course Check Point Learning Portal |
| Exam Registration: | Pearson VUE Check Point Exams Check Point Certification Portal |
| Sample Questions: | CheckPoint 156-590 Sample Questions |
| Exam Way: | Proctored exam via Pearson VUE (online or test center) |
| Pre Condition: | Recommended: Check Point Certified Security Administrator (CCSA) or equivalent networking/security knowledge |
| Official Syllabus URL: | https://www.checkpoint.com/certifications/ |
CheckPoint 156-590 Exam Syllabus Topics:
| Section | Objectives |
|---|---|
| Topic 1: Anti-Virus and Anti-Malware | - Threat Emulation and Threat Extraction concepts - File inspection and malware detection |
| Topic 2: IPS and Anti-Bot Technologies | - Intrusion Prevention System (IPS) configuration and tuning - Anti-Bot detection and mitigation |
| Topic 3: Logs, Monitoring, and Troubleshooting | - Troubleshooting Threat Prevention issues - SmartConsole logging and analysis |
| Topic 4: URL Filtering and Application Control | - Application Control enforcement and monitoring - URL filtering policy configuration |
| Topic 5: Threat Prevention Architecture | - Check Point Threat Prevention framework overview - Security Gateway Threat Prevention blades |
CheckPoint Check Point Certified Threat Prevention Specialist (CTPS) Sample Questions:
1. You have to issue a Log filter to view IPS logs generated for user John Doe.
Which of the following is the correct filter?
A) user:"John Doe" AND (action:drop OR action:reject OR action:block)
B) user:John Doe AND (action:drop OR action:reject OR action:block)
C) user:"John-Doe" AND (action:drop OR action:reject OR action:block)
D) user:'John Doe' AND (action:drop OR action:reject OR action:block)
2. At what point is the Anti-Bot blade enforced?
A) Post-inspection
B) Post-infection
C) Pre-infection
D) Pre-inspection
3. What Threat Prevention signature updates you can trigger manually?
A) Only IPS.
B) IPS, Antivirus and Antibot.
C) Non everything is updated automatically.
D) IPS and antivirus.
4. Are Cleanup Rules mandatory in a Threat Prevention Policy?
A) A Cleanup Rule is required in a Basic Profile.
B) Cleanup Rules are not strictly required in the Threat Prevention Policy.
C) Cleanup Rules are not required if you are using the Basic Profile.
D) Cleanup Rules are only required, if the Access Control Policy does not have one.
5. Protections with a High Protection Impact rating go through which path?
A) PXL
B) F2F
C) CPASXL
D) SXL
Solutions:
| Question # 1 Answer: A | Question # 2 Answer: B | Question # 3 Answer: B | Question # 4 Answer: B | Question # 5 Answer: B |
We're so confident of our products that we provide no hassle product exchange.


By Sebastiane

