156-915.80 Exam Details

  • Exam Code
    :156-915.80
  • Exam Name
    :Check Point Certified Security Expert Update - R80.10
  • Certification
    :Checkpoint Certifications
  • Vendor
    :CheckPoint
  • Total Questions
    :536 Q&As
  • Last Updated
    :May 28, 2026

CheckPoint 156-915.80 Online Questions & Answers

  • Question 101:

    What is not a component of Check Point SandBlast?

    A. Threat Emulation
    B. Threat Simulation
    C. Threat Extraction
    D. Threat Cloud

  • Question 102:

    Vanessa is expecting a very important Security Report. The Document should be sent as an attachment via e-mail. An e-mail with Security_ report.pdf file was delivered to her e-mail inbox. When she opened the PDF file, she noticed that the file is basically empty and only few lines of text are in it. The report is missing some graphs, tables and links. Which component of SandBlast protection is her company using on a Gateway?

    A. SandBlast Threat Emulation
    B. SandBlast Agent
    C. Check Point Protect
    D. SandBlast Threat Extraction

  • Question 103:

    Your R80 primary Security Management Server is installed on GAiA;

    You plan to schedule the Security Management Server to run fw logswitch automatically every 48 hours.

    How do you create this schedule?

    A. On a GAiA Security Management Server, this can only be accomplished by configuring the command fw logswitch via the cron utility.
    B. Create a time object, and add 48 hours as the interval. Open the primary Security Management Server object's Logs and Masters window, enable Schedule log switch, and select the Time object.
    C. Create a time object, and add 48 hours as the interval. Open the Security Gateway object's Logs and Masters window, enable Schedule log switch, and select the Time object.
    D. Create a time object, and add 48 hours as the interval. Select that time object's Global Properties > Logs and Masters window, to schedule a logswitch.

  • Question 104:

    Write the full fw command and syntax that you would use to troubleshoot ClusterXL sync issues.

  • Question 105:

    On R80.10 the IPS Blade is managed by:

    A. Threat Protection policy
    B. Anti-Bot Blade
    C. Threat Prevention policy
    D. Layers on Firewall policy

  • Question 106:

    John Adams is an HR partner in the ACME organization. ACME IT wants to limit access to HR servers to designated IP addresses to minimize malware infection and unauthorized access risks. Thus, the gateway policy permits access only

    from John's desktop which is assigned an IP address 10.0.0.19 via DHCP.

    John received a laptop and wants to access the HR Web Server from anywhere in the organization. The IT department gave the laptop a static IP address, but that limits him to operating it only from his desk. The current Rule Base contains a

    rule that lets John Adams access the HR Web Server from his laptop. He wants to move around the organization and continue to have access to the HR Web Server.

    To make this scenario work, the IT administrator:

    1) Enables Identity Awareness on a gateway, selects AD Query as one of the Identity Sources installs the policy.

    2) Adds an access role object to the Firewall Rule Base that lets John Adams PC access the HR Web Server from any machine and from any location. John plugged in his laptop to the network on a different network segment and he is not

    able to connect. How does he solve this problem?

    A. John should install the Identity Awareness Agent
    B. The firewall admin should install the Security Policy
    C. John should lock and unlock the computer
    D. Investigate this as a network connectivity issue

  • Question 107:

    In what way are SSL VPN and IPSec VPN different?

    A. SSL VPN is using HTTPS in addition to IKE, whereas IPSec VPN is clientless
    B. SSL VPN adds and extra VPN header to the packet, IPsec VPN does not
    C. IPsec VPN does not support two factor authentication, SSL VPN does support this
    D. IPsec VPN uses an additional virtual adapter; SSL VPN uses the client network adapter only

  • Question 108:

    Fill in the blanks. To view the number of concurrent connections going through your firewall, you would use the command and syntax __ ___ __ __________ __ .

  • Question 109:

    Type the command and syntax that you would use to view the virtual cluster interfaces of a ClusterXL environment.

  • Question 110:

    Jack needs to configure CoreXL on his Red Security Gateway. What are the correct steps to enable CoreXL?

    A. SSH to Red Security Gateway, run cpconfig> select Configure Check Point CoreXL > enable CoreXL > exit cpconfig> reboot the Security Gateway
    B. SSH to Red Security Gateway, run cpconfig> select Configure Check Point CoreXL > exit cpconfig> reboot the Security Gateway
    C. Open the SmartDashboard, Open the Red Check Point Object, select ClusterXL, check the CoreXL box, and push policy
    D. Open the SmartDashboard, Open the Red Check Point Object, select Optimizations, check the CoreXL box, and push policy

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CheckPoint exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 156-915.80 exam preparations and CheckPoint certification application, do not hesitate to visit our Vcedump.com to find your solutions here.