Summer Sale Special - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmaspas7

Easiest Solution 2 Pass Your Certification Exams

156-590 Checkpoint Check Point Certified Threat Prevention Specialist (CTPS) Free Practice Exam Questions (2026 Updated)

Prepare effectively for your Checkpoint 156-590 Check Point Certified Threat Prevention Specialist (CTPS) certification with our extensive collection of free, high-quality practice questions. Each question is designed to mirror the actual exam format and objectives, complete with comprehensive answers and detailed explanations. Our materials are regularly updated for 2026, ensuring you have the most current resources to build confidence and succeed on your first attempt.

Page: 1 / 2
Total 75 questions

What information is provided by "fwaccel stats"?

A.

This command is to enable acceleration on QoS packets.

B.

You can check the percentage of F2F connections along with the reason why those connections could not be accelerated.

C.

The command is used to examine traffic utilization statistics.

D.

You can check the SecureXL status of your Security Gateway.

What are the three IPS update options?

A.

Auto Update, Policy Update, Update Now

B.

Update Now, Schedule Update, Follow Protections

C.

Update Now, Schedule Update, Follow policy

D.

Manual Update, Scheduled Update, Auto Update

You have been asked to inform your CEO about last week's security incident.

What SmartEvent mechanism are you going to use?

A.

You have to use Smart Event threat prevention View to get the information then extract it to csv format and then generate a pdf with this info.

B.

The executive reports generally contain abstract information without much technical detail. You have to use Smart Event Threat Prevention Report filtered for last week data.

C.

From the smart log you filter out traffic for last week and export it to a special report generate tool.

D.

You have to build a view for last week and submit it to your CEO.

Which feature can improve performance by allowing the gateway to bypass Anti-Virus inspection of specific files?

A.

Content Control

B.

Exclusions

C.

Exceptions

D.

Bypass

Which is NOT an available setting under Custom Policy Tools?

A.

IPS Protections

B.

UserCheck

C.

Indicators

D.

Malicious Activity Detection

Which DNS Protection mechanism has been introduced with R81.20?

A.

Propagation of a Bogus IP as a response to a DNS request.

B.

Malware DNS Trap.

C.

ThreatCloud DNS Tunneling Protection.

D.

Synchronization of the /etc/hosts file from Protection servers.

What is the default SMS and SG update interval for IPS Protections (R80.20+)?

A.

Six hours

B.

Twelve hours

C.

Two hours

D.

Daily

Which protection setting is generally the MOST resource intensive?

A.

Inactive

B.

Prevent

C.

Inspect

D.

Detect

What is an advantage of SmartEvent Reports over Views?

A.

Reports are live and interactive.

B.

Reports can be delivered to users who are not Check Point administrators.

C.

Reports have access to more detail than Views.

D.

Reports are customizable and Views are not.

What does ThreatCloud DGA Protection defend against?

A.

Known malicious IPs

B.

Infected URLs

C.

Infected files

D.

Newly created domains

IPS stands for?

A.

Invasion Prevention Software

B.

Intrusion Prevention System

C.

Intrusion Prevention Software

D.

Invasion Prevention System

What is a function of SmartEvent?

A.

Runs on the Security Gateway generating events

B.

Generates logs for customizable views

C.

A Multi-Domain level log forwarding tool used to forward logs to syslog or similar external tools

D.

Correlates Security Gateway logs into easily understandable events

What type of layer is the threat Prevention?

A.

It can be ordered or inline

B.

Inline

C.

Post Access Control follow-up layer

D.

Ordered

What Track - Settings Forensics does not?

A.

When enabled, advanced forensics detailed information is included in logs.

B.

Check Point researchers use advanced forensics details for troubleshooting and attack analysis.

C.

Forensics details also include Security Gateway statistics, which are sent to the Check Point Cloud.

D.

Communicate forensics data collected to Government Agencies.

What is the action for newly updated protections which is set in Staging Mode?

A.

Detect

B.

Bypass

C.

None

D.

Prevent

What kind of information is stored in the Audit Log?

A.

An audit log is a record of actions taken by administrators.

B.

An audit log is a record of system event logs on the Security Management Server.

C.

An audit log is a portion of the traffic log which has been filtered by filter expression defined by the administrator.

D.

An audit log is a record of system event logs on the Security Gateway.

Which are possible Anti-Virus Scanning Technologies?

A.

Inspect or Bypass

B.

Active Streaming, Passive Streaming, Deep Scanning and Archive Scanning

C.

Active and Passive Scanning

D.

Automatic Scanning, Manual Scanning, On-Demand Scanning, Scheduled Scanning

How are SNORT rules constructed?

A.

The rule is contained on two lines. There are two logical sections: Rule Header and Rule Payload.

B.

The rule is contained on two lines. There are two logical sections: Rule Header and Rule Options.

C.

The rule is contained on one line. There are two logical sections: Rule Header and Rule Payload.

D.

The rule is contained on a single line. There are two logical sections: Rule Header and Rule Options.

What deployment options for SmartEvent exist?

A.

1. Standalone and 2. Distributed Deployment

B.

1. Integrated/Standalone and 2. Dedicated Server

C.

1. Prevent Mode and 2. Detect Mode

D.

1. High Availability Mode and 2. Load Sharing Mode

In Anti-Virus, what is one of the benefits of Deep Scanning?

A.

Best performance

B.

Minimal resource utilization

C.

Minimal buffering

D.

Thorough protection

Page: 1 / 2
Total 75 questions
Copyright © 2014-2026 Solution2Pass. All Rights Reserved