Test information:
Number of questions: 70
Time allowed in minutes: 105
Required passing score: 63%
Languages: English
The IBM Certified Specialist - InfoSphere Master Data Management (MDM) v11.3
(Physical) will certify that the successful candidate has important knowledge
and skills necessary to install, configure and deploy MDM on a development
workstation along with extending the MDM capabilities using the MDM Workbench.
The successful candidate will also understand the architecture components and
solution building blocks of Physical MDM.
Design and Architecture (7%)
Describe a Virtual vs Physical vs Hybrid MDM implementation
Describe the Physical MDM technical architecture
Describe the Physical MDM solution building blocks
Data Model (8%)
Describe the Physical MDM business entities and their relationships
Describe common domain entities
Describe administration tables
Install and Configure Physical MDM (4%)
Identify environment setup and configuration
Extending the Physical MDM Capabilities (20%)
Demonstrate knowledge of the Request Response Framework
Demonstrate knowledge of data additions
Demonstrate knowledge of data extensions
Identify how to create code tables
Demonstrate knowledge of behavior extensions
Identify the steps to create a new service
Demonstrate knowledge of composite services
Identify how Physical MDM invokes custom code
External Rules and Validation (5%)
Describe External Rule Framework
Describe external validation and when to use it
Identify how to create and modify an external rule
Data Management (17%)
Describe Suspect Duplicate Processing work flow
Describe Deterministic Matching
Demonstrate knowledge of Probabilistic Matching
Identify components of a Probabilistic Matching Engine algorithm
Describe Physical MDM Standardization
Demonstrate knowledge of search capabilities in Physical MDM
Describe Data Governance
Features and Functionality (10%)
Describe knowledge of management of historical data
Demonstrate knowledge of configurable inquiry levels
Describe Batch Job Processing
Describe the IBM Stewardship Center
Describe Event Manager
Describe language and locale
Describe knowledge of Transaction Audit Information Log
Security (5%)
Describe Physical MDM Authentication and Authorization
Describe Physical MDM security entitlements
Integration (12%)
Describe how to invoke a Physical MDM service
Describe the Adaptive Service Interface
Describe the Notification Framework
Describe the Broadcast Framework
Describe the bulk import and extraction of data
Troubleshooting (12%)
Demonstrate knowledge of configuring and analyzing Physical MDM log files
Demonstrate knowledge of error handling
Describe troubleshooting an installation
Describe Workbench debugging
Describe the Physical MDM support tools
Job Role Description / Target Audience
The IBM Certified Specialist - InfoSphere Master Data Management (MDM) v11.3
(Physical) will certify that the successful candidate has important knowledge
and skills necessary to install, configure and deploy MDM on a development
workstation along with extending the MDM capabilities using the MDM Workbench.
The successful candidate will also understand the architecture components and
solution building blocks of Physical MDM.
Recommended Prerequisite Skills
Java EE Architectural design - intermediate
OSGI Framework knowledge - intermediate
WebSphere Application Server - intermediate
Rational Application Developer - intermediate
Database Skills - intermediate
JAVA programming - intermediate
General knowledge of XML - intermediate
General knowledge of JMS, RMI and Webservices - basic
General knowledge of MQ - basic
Thursday, June 15, 2017
C2090-430 IBM InfoSphere Master Data Management v11.3 (Physical)
Tuesday, June 13, 2017
C2090-420 IBM InfoSphere MDM Server v9.0
C2090-420: IBM InfoSphere MDM Server v9.0
Test information:
Number of questions: 63
Time allowed in minutes: 90
Required passing score: 67%
Languages: English
Section 1 - Configure and Deploy InfoSphere MDM Server in a Development Workstation (9%)
Given a scenario, describe workstation RAD/RSA development environment setup
Demonstrate knowledge of deploying Custom Code
Demonstrate knowledge of configuring MDM Server features
Section 2 - MDM Server Architecture and Domain Model (12%)
Describe basic MDM Server architecture
Describe MDM Server business entities and their relationships
Section 3 - Extensions and Additions (through Workbench) (12%)
Given a scenario, demonstrate knowledge of differences between a data extension and an addition
Given a scenario, demonstrate knowledge of creating code tables
Demonstrate knowledge of how to create a behavior extension
Section 4 - Composite Transactions (8%)
Describe how to create composite transactions using Business Proxy
Describe the difference between composite XML transactions and Java business proxy composites
Section 5 - External Rules and Validation (9%)
Describe External Business Rules Framework
Describe how to create a new external rule
Describe external validation and when to use it
Section 6 - Search Strategy (5%)
Describe search strategy (high level)
Describe different implementations of seach strategy
Section 7 - Suspect Duplicate Processing (14%)
Describe party SDP work flow
Demonstrate knowledge of implementing customized SDP logic
Deomonstrate knowledge of 'evergreening'
Section 8 - Features and Functionality (16%)
Describe simple/compound history
Describe the MDM Server components
Demonstrate knowledge of configurable inquiry levels
Section 9 - Security (6%)
Describe MDM Server data visibility and accessibility control
Demonstrate knowledge of Authentication versus Authorization
Section 10 - Troubleshooting (9%)
Given a scenario, demonstrate knowledge of configuring and analyzing MDM Server log files
Given a scenario, demonstrate knowledge of Error handling
The IBM Certified Developer - InfoSphere MDM Server v9.0 will certify that the successful candidate has important knowledge and skills necessary to configure and deploy InfoSphere MDM Server v9.0 in a development workstation along with being able to customize the data model and develop custom services through the use of the Infosphere MDM Server v9.0 workbench.
Recommended Prerequisite Skills
Major topics covered by the test include:
Configure and Deploy InfoSphere MDM Server in a Development Workstation
MDM Server Architecture and Domain Model
Extensions and Additions (through Workbench)
Composite Transactions
External Rules and Validation
Search Strategy
Suspect Duplicate Processing
Features and Functionality
Security
Troubleshooting
QUESTION 1
Which two features differ between the probabilistic and deterministic approach to Suspect
Duplication Processing? (Choose two.)
A. candidate list selection
B. matching critical data elements between praties
C. handing A2 suspects
D. determining the match category
Answer: B,D
Explanation:
QUESTION 2
What is a design component of Data Persistency Entitlements?
A. Ancestors
B. Accessors
C. Activities
D. Profiles
Answer: B
Explanation:
QUESTION 3
An external system provides a daily master data feed into InfoSphere MDM Server. New business
proxies are created to synchronize this information with existing data in the MDM database. The
synchronization process involves calling existing InfoSphere MDM Server transactions. What
information does the business proxy use to resolve the identities of business objects and detect
transactions needed in the composite transaction?(Choose two.)
A. business object primary key fields
B. business object foreign key fields
C. business object business key fields
D. business key fields in parent business object hierarchy
Answer: C,D
Explanation:
QUESTION 4
Which two statements are true about the type of history database triggers in InfSphere MDM
Server?(Choose two.)
A. SIMPLE triggers populate the history record in audit tables when a record is inserted into an
operational table in the InfoSphere MDM Server database.
B. COMPOUND triggers populate the history record in audit tables when a record is updated or
deleted from within an operational table in the InfoSphere MDM Server database.
C. SIMPLE triggers populate the history record in audit tables when a record is updated from
within an operational table in the InfoSphere MDM Server database.
D. COMPOUND triggers populate the history record in audit tables when a record is inserted or
updated from within an operational table in the InfSphere MDM Server database.
Answer: C,D
Explanation:
Test information:
Number of questions: 63
Time allowed in minutes: 90
Required passing score: 67%
Languages: English
Section 1 - Configure and Deploy InfoSphere MDM Server in a Development Workstation (9%)
Given a scenario, describe workstation RAD/RSA development environment setup
Demonstrate knowledge of deploying Custom Code
Demonstrate knowledge of configuring MDM Server features
Section 2 - MDM Server Architecture and Domain Model (12%)
Describe basic MDM Server architecture
Describe MDM Server business entities and their relationships
Section 3 - Extensions and Additions (through Workbench) (12%)
Given a scenario, demonstrate knowledge of differences between a data extension and an addition
Given a scenario, demonstrate knowledge of creating code tables
Demonstrate knowledge of how to create a behavior extension
Section 4 - Composite Transactions (8%)
Describe how to create composite transactions using Business Proxy
Describe the difference between composite XML transactions and Java business proxy composites
Section 5 - External Rules and Validation (9%)
Describe External Business Rules Framework
Describe how to create a new external rule
Describe external validation and when to use it
Section 6 - Search Strategy (5%)
Describe search strategy (high level)
Describe different implementations of seach strategy
Section 7 - Suspect Duplicate Processing (14%)
Describe party SDP work flow
Demonstrate knowledge of implementing customized SDP logic
Deomonstrate knowledge of 'evergreening'
Section 8 - Features and Functionality (16%)
Describe simple/compound history
Describe the MDM Server components
Demonstrate knowledge of configurable inquiry levels
Section 9 - Security (6%)
Describe MDM Server data visibility and accessibility control
Demonstrate knowledge of Authentication versus Authorization
Section 10 - Troubleshooting (9%)
Given a scenario, demonstrate knowledge of configuring and analyzing MDM Server log files
Given a scenario, demonstrate knowledge of Error handling
The IBM Certified Developer - InfoSphere MDM Server v9.0 will certify that the successful candidate has important knowledge and skills necessary to configure and deploy InfoSphere MDM Server v9.0 in a development workstation along with being able to customize the data model and develop custom services through the use of the Infosphere MDM Server v9.0 workbench.
Recommended Prerequisite Skills
Major topics covered by the test include:
Configure and Deploy InfoSphere MDM Server in a Development Workstation
MDM Server Architecture and Domain Model
Extensions and Additions (through Workbench)
Composite Transactions
External Rules and Validation
Search Strategy
Suspect Duplicate Processing
Features and Functionality
Security
Troubleshooting
QUESTION 1
Which two features differ between the probabilistic and deterministic approach to Suspect
Duplication Processing? (Choose two.)
A. candidate list selection
B. matching critical data elements between praties
C. handing A2 suspects
D. determining the match category
Answer: B,D
Explanation:
QUESTION 2
What is a design component of Data Persistency Entitlements?
A. Ancestors
B. Accessors
C. Activities
D. Profiles
Answer: B
Explanation:
QUESTION 3
An external system provides a daily master data feed into InfoSphere MDM Server. New business
proxies are created to synchronize this information with existing data in the MDM database. The
synchronization process involves calling existing InfoSphere MDM Server transactions. What
information does the business proxy use to resolve the identities of business objects and detect
transactions needed in the composite transaction?(Choose two.)
A. business object primary key fields
B. business object foreign key fields
C. business object business key fields
D. business key fields in parent business object hierarchy
Answer: C,D
Explanation:
QUESTION 4
Which two statements are true about the type of history database triggers in InfSphere MDM
Server?(Choose two.)
A. SIMPLE triggers populate the history record in audit tables when a record is inserted into an
operational table in the InfoSphere MDM Server database.
B. COMPOUND triggers populate the history record in audit tables when a record is updated or
deleted from within an operational table in the InfoSphere MDM Server database.
C. SIMPLE triggers populate the history record in audit tables when a record is updated from
within an operational table in the InfoSphere MDM Server database.
D. COMPOUND triggers populate the history record in audit tables when a record is inserted or
updated from within an operational table in the InfSphere MDM Server database.
Answer: C,D
Explanation:
Tuesday, May 23, 2017
C2090-304 IBM InfoSphere QualityStage v9.1 Solution Developer
Test information:
Number of questions: 63
Time allowed in minutes: 90
Required passing score: 71%
Languages: English, Japanese
This exam will certify that the successful candidate has important knowledge and skills necessary to professionally design and develop a QualityStage v9.1 solution to produce efficient and accurate results.
Section 1 - Methodology (5%)
Describe the steps in data quality methodology
Understand the impact of data integration preparsing
Section 2 - Design Considerations (13%)
Identify the steps for standardization
Demonstrate knowledge how to optimize QualityStage jobs using parallel concepts
Demonstrate knowledge how to handle data from multiple countries
Describe initial vs. delta vs. real-time design considerations
Section 3 - Investigation (8%)
Demonstrate knowledge of investigation types
Describe how investigation results can be used
Section 4 - Standardization / Adresses / Postal (14%)
Describe the differences between certification, vertification and standardization
Define what the standardization stages are and how to use them
Describe the purpose of standardization and what results are produced by the process
Section 5 - Rule Sets (16%)
Demonstrate knowledge of how to customize standardization rules
Demonstrate knowledge of the components of a rule and their functions
Demonstrate knowledge of managing standardizations rules
Demonstrate knowledge of user defined standardization rules
Section 6 - Matching (21%)
Demonstrate knowledge of match concepts
Describe the match job components
Describe how to review and tune a match
Demonstrate knowledge of managing match specification (re-usability)
Demonstrate knowledge of match job design to achieve optimal performance
Section 7 - Survive (10%)
Describe the purpose of the survive stage
Demonstrate knowledge of the different rule types for surviving data and when to use them
Describe how to implement a survive stage
Section 8 - Setup and Troubleshooting (14%)
Identify how to troubleshoot a QualityStage job
Describe how to configure data quiality environment functionality
Describe QualityStage deployment considerations
Demonstrate knowledge of NLS/non-NLS install and its impact on QualityStage stages
Explain the process necessary to run multiple copies of the job (job multi-instance)
IBM Certified Solution Developer - InfoSphere QualityStage v9.1
Job Role Description / Target Audience
The IBM Certified Solution Developer - InfoSphere QualityStage v9.1 is a data quality developer, analyst and architect and has important knowledge and skills necessary to professionally design and develop a QualityStage v9.1 solution to produce efficient and accurate results.
Recommended Prerequisite Skills
Must understand overall QualityStage functionality:
Possess detailed knowledge of QualityStage stages to develop an effective application
Postal Applications and Address Verification Interface (AVI)
Real-time design of QualityStage
Integration into InfoSphere DataStage solutions
Job design using the DataStage and QualityStage Designer interface
Assess the appropriateness and quality of data for data integration initiative
Ensures QualityStage solution meets business requirements
Monitors resolution of data quality issues
Provides metadata to create functional and technical specifications for data integration/cleansing applications
Design auditing processes to meet data integrity needs
Design data quality processes through a QualityStage application
Determine the appropriate tool to fulfill data quality and business requirements
QUESTION 1Number of questions: 63
Time allowed in minutes: 90
Required passing score: 71%
Languages: English, Japanese
This exam will certify that the successful candidate has important knowledge and skills necessary to professionally design and develop a QualityStage v9.1 solution to produce efficient and accurate results.
Section 1 - Methodology (5%)
Describe the steps in data quality methodology
Understand the impact of data integration preparsing
Section 2 - Design Considerations (13%)
Identify the steps for standardization
Demonstrate knowledge how to optimize QualityStage jobs using parallel concepts
Demonstrate knowledge how to handle data from multiple countries
Describe initial vs. delta vs. real-time design considerations
Section 3 - Investigation (8%)
Demonstrate knowledge of investigation types
Describe how investigation results can be used
Section 4 - Standardization / Adresses / Postal (14%)
Describe the differences between certification, vertification and standardization
Define what the standardization stages are and how to use them
Describe the purpose of standardization and what results are produced by the process
Section 5 - Rule Sets (16%)
Demonstrate knowledge of how to customize standardization rules
Demonstrate knowledge of the components of a rule and their functions
Demonstrate knowledge of managing standardizations rules
Demonstrate knowledge of user defined standardization rules
Section 6 - Matching (21%)
Demonstrate knowledge of match concepts
Describe the match job components
Describe how to review and tune a match
Demonstrate knowledge of managing match specification (re-usability)
Demonstrate knowledge of match job design to achieve optimal performance
Section 7 - Survive (10%)
Describe the purpose of the survive stage
Demonstrate knowledge of the different rule types for surviving data and when to use them
Describe how to implement a survive stage
Section 8 - Setup and Troubleshooting (14%)
Identify how to troubleshoot a QualityStage job
Describe how to configure data quiality environment functionality
Describe QualityStage deployment considerations
Demonstrate knowledge of NLS/non-NLS install and its impact on QualityStage stages
Explain the process necessary to run multiple copies of the job (job multi-instance)
IBM Certified Solution Developer - InfoSphere QualityStage v9.1
Job Role Description / Target Audience
The IBM Certified Solution Developer - InfoSphere QualityStage v9.1 is a data quality developer, analyst and architect and has important knowledge and skills necessary to professionally design and develop a QualityStage v9.1 solution to produce efficient and accurate results.
Recommended Prerequisite Skills
Must understand overall QualityStage functionality:
Possess detailed knowledge of QualityStage stages to develop an effective application
Postal Applications and Address Verification Interface (AVI)
Real-time design of QualityStage
Integration into InfoSphere DataStage solutions
Job design using the DataStage and QualityStage Designer interface
Assess the appropriateness and quality of data for data integration initiative
Ensures QualityStage solution meets business requirements
Monitors resolution of data quality issues
Provides metadata to create functional and technical specifications for data integration/cleansing applications
Design auditing processes to meet data integrity needs
Design data quality processes through a QualityStage application
Determine the appropriate tool to fulfill data quality and business requirements
How does QualityStage output the correct ISO code for a record?
A. ISO code functionality is not available.
B. ISO code supplied by the Country rule set.
C. ISO code supplied by the USPREP rule set.
D. ISO code supplied by the US Address rule set.
Answer: C
Explanation: The ISOterritorycode is appended to the domain preprocessor abbreviation (PREP).
QUESTION 2
You need to create a batch delta match process for transaction records against a very large
master file of existing clients.
Which QualityStage match option should be used?
A. Transitive One-source match
B. Two-source many-to-one match
C. Deterministic One-source match
D. Two-source many-to-many match
Answer: A
Explanation: Transitive One-source matchcan extend further than one-source-dependent
because it uses all the pairs that score above the match cutoff. It's recommended if you want to
account forinconsistentdata entryin fields that assist in duplicate identification.
QUESTION 3
How can Word Investigation reports be used to modify a rule set?
A. Corrects spelling errors in the data field.
B. Adds tokens to allow identification of additional duplicates.
C. Identifies new tokens to allow additional words to be classified.
D. Identifies matched words to be used in match designer frequency distribution.
Answer: A
Explanation:
QUESTION 4
Which statement about the jobs used by the Match Specification Setup Wizard is true?
A. The jobs must be created.
B. The jobs must be imported.
C. The jobs exist for only One-source individual match.
D. The jobs are created in the repository at installation time.
Answer: A
Explanation:
QUESTION 5
When would you use the survive technique 'Most Frequent'?
A. When more than one target field is required.
B. When the most frequent occurrence is required.
C. When the most frequently populated value is required.
D. When the most frequently populated value is required with two or more occurrences.
Answer: D
Explanation:
Wednesday, May 10, 2017
C2070-994 IBM Datacap V9.0 Solution Designer
Test information:
Number of questions: 66
Time allowed in minutes: 120
Required passing score: 65%
Languages: English
The test contains five sections, totaling 65ti multiple-choice questions. The percentages after each section title reflect the approximate distribution of the total question set across the sections.
Section 1 - Datacap Architecture (17%)
Demonstrate understanding of Datacap architecture
Explain general architecture
Explain capacity planning and load balancing configuration
Demonstrate an understanding of distributed environments
Demonstrate an understanding of mobile architecture
Demonstrate an understanding of High Availability and Scaling
Demonstrate an understanding of High Availability and Scaling
Identify minimum installation requirements
Demonstrate knowledge of Datacap databases
Demonstrate knowledge of Datacap application offerings
Demonstrate understanding of wTM
Section 2 - Analyze Business Requirements (19%)
Determine what information to gather from images
Identify ingestion sources
Determine business validation rules
Determine workflow steps
Demonstrate understanding of export requirements
Determine security requirements
Determine reporting requirements
Section 3 - Design a Datacap Taskmaster Solution (26%)
Demonstrate knowledge of creating Datacap document hierarchy
Analyze job and task design
Demonstrate knowledge of ingestion
Demonstrate knowledge of document conversions
Demonstrate knowledge of page identification
Demonstrate general page id knowledge
Demonstrate knowledge of Fingerprinting
Demonstrate knowledge of recognition methodology
Demonstrate knowledge of validation techniques
Demonstrate knowledge of export approaches
Demonstrate knowledge of FastDoc
Demonstrate knowledge of RuleRunner
Demonstrate knowledge of critical Datacap folder/file configuration
Section 4 - Develop Application and Solution Components (29%)
Identify uses of Maintenance Manager
Demonstrate understanding of Report Viewer
Demonstrate understanding of RuleRunner
Demonstrate knowledge of using FastDoc admin
Demonstrate understanding of Datacap Studio
Demonstrate understanding of Studio AppWizard
Demonstrate knowledge of how to develop Task Profiles
Demonstrate knowledge of how to develop rulesets, rules, and functions
Demonstrate knowledge of applying rules to Datacap Document Hierarchy (DCO)
Demonstrate understanding of web administration
Section 5 - Solution Testing and Deployment (9%)
Demonstrate knowledge of performing solution testing
Demonstrate knowledge on how to use Datacap Studio to test
Explain steps required to move solution between deployment targets
Demonstrate ability to enable logging for all the components
Demonstrated knowledge of troubleshooting techniques
IBM Certified Solution Designer - Datacap V9.0
Job Role Description / Target Audience
This intermediate level certification test certifies that the successful candidate has the knowledge to create the theoretical and/or detailed technical design of an application, solution, and infrastructure using IBM Datacap V9.0. Provide expertise to evaluate and choose between alternatives; assist with balancing costs with capabilities and priorities. Identify products / technologies / processes to be included, and determine points of required integration and customization. Identify sizing and capacity issues, as well as conflicts with existing processes or environments.
Recommended Prerequisite Skills
Before preparing for this certification, basic understanding of the following is recommended and assumed:
- Knowledge of IBM Datacap components: FastDoc, Datacap Web Server, Report Viewer, Desktop, Dstudio, RuleRunner, Maintenance Manager, Datacap Navigator and Dashboard
- IBM Content Navigator
- Knowledge of WebSphere Application Server
- Cloud technologies
- Ability to write actions for IBM Datacap: VBScript, C#, XML
- Knowledge of Microsoft IIS
- Knowledge of Out-of-the-Box component interfaces
- Knowledge of content acquisition: import, fax, email and scan
- Knowledge of document and image conversion
- Knowledge of document hierarchy
- Knowledge of document and page identification
- Knowledge of recognition
- Knowledge of routing: branching, jumping and splitting
- Knowledge of verification and validation
- Knowledge of export and repositories
- Knowledge of databases
- Authentication and Authorization
Number of questions: 66
Time allowed in minutes: 120
Required passing score: 65%
Languages: English
The test contains five sections, totaling 65ti multiple-choice questions. The percentages after each section title reflect the approximate distribution of the total question set across the sections.
Section 1 - Datacap Architecture (17%)
Demonstrate understanding of Datacap architecture
Explain general architecture
Explain capacity planning and load balancing configuration
Demonstrate an understanding of distributed environments
Demonstrate an understanding of mobile architecture
Demonstrate an understanding of High Availability and Scaling
Demonstrate an understanding of High Availability and Scaling
Identify minimum installation requirements
Demonstrate knowledge of Datacap databases
Demonstrate knowledge of Datacap application offerings
Demonstrate understanding of wTM
Section 2 - Analyze Business Requirements (19%)
Determine what information to gather from images
Identify ingestion sources
Determine business validation rules
Determine workflow steps
Demonstrate understanding of export requirements
Determine security requirements
Determine reporting requirements
Section 3 - Design a Datacap Taskmaster Solution (26%)
Demonstrate knowledge of creating Datacap document hierarchy
Analyze job and task design
Demonstrate knowledge of ingestion
Demonstrate knowledge of document conversions
Demonstrate knowledge of page identification
Demonstrate general page id knowledge
Demonstrate knowledge of Fingerprinting
Demonstrate knowledge of recognition methodology
Demonstrate knowledge of validation techniques
Demonstrate knowledge of export approaches
Demonstrate knowledge of FastDoc
Demonstrate knowledge of RuleRunner
Demonstrate knowledge of critical Datacap folder/file configuration
Section 4 - Develop Application and Solution Components (29%)
Identify uses of Maintenance Manager
Demonstrate understanding of Report Viewer
Demonstrate understanding of RuleRunner
Demonstrate knowledge of using FastDoc admin
Demonstrate understanding of Datacap Studio
Demonstrate understanding of Studio AppWizard
Demonstrate knowledge of how to develop Task Profiles
Demonstrate knowledge of how to develop rulesets, rules, and functions
Demonstrate knowledge of applying rules to Datacap Document Hierarchy (DCO)
Demonstrate understanding of web administration
Section 5 - Solution Testing and Deployment (9%)
Demonstrate knowledge of performing solution testing
Demonstrate knowledge on how to use Datacap Studio to test
Explain steps required to move solution between deployment targets
Demonstrate ability to enable logging for all the components
Demonstrated knowledge of troubleshooting techniques
IBM Certified Solution Designer - Datacap V9.0
Job Role Description / Target Audience
This intermediate level certification test certifies that the successful candidate has the knowledge to create the theoretical and/or detailed technical design of an application, solution, and infrastructure using IBM Datacap V9.0. Provide expertise to evaluate and choose between alternatives; assist with balancing costs with capabilities and priorities. Identify products / technologies / processes to be included, and determine points of required integration and customization. Identify sizing and capacity issues, as well as conflicts with existing processes or environments.
Recommended Prerequisite Skills
Before preparing for this certification, basic understanding of the following is recommended and assumed:
- Knowledge of IBM Datacap components: FastDoc, Datacap Web Server, Report Viewer, Desktop, Dstudio, RuleRunner, Maintenance Manager, Datacap Navigator and Dashboard
- IBM Content Navigator
- Knowledge of WebSphere Application Server
- Cloud technologies
- Ability to write actions for IBM Datacap: VBScript, C#, XML
- Knowledge of Microsoft IIS
- Knowledge of Out-of-the-Box component interfaces
- Knowledge of content acquisition: import, fax, email and scan
- Knowledge of document and image conversion
- Knowledge of document hierarchy
- Knowledge of document and page identification
- Knowledge of recognition
- Knowledge of routing: branching, jumping and splitting
- Knowledge of verification and validation
- Knowledge of export and repositories
- Knowledge of databases
- Authentication and Authorization
Monday, May 8, 2017
C2070-993 IBM Case Manager V5.2.1 Solution Designer
Test information:
Number of questions: 62
Time allowed in minutes: 120
Required passing score: 57%
Languages: English
The test contains five sections, totaling 62 multiple-choice questions. The percentages after each section title reflect the approximate distribution of the total question set across the sections.
Section 1 - Planning and Architecture (18%)
Demonstrate an understanding of IBM Case Manager Architecture
Identify solutions best addressed by Case Manager
Identify key differences between development and production environments
Identify integrated products and add-on software capabilities including licensing
Section 2 - Designing a Case Solution (30%)
Demonstrate an understanding of the Case Manager object model
Demonstrate an understanding of Case Builder and its Artifacts
Demonstrate an understanding of external documents
Demonstrate an understanding of Case Task and Process Fragments
Demonstrate an understanding of the Page Designer
Demonstrate an understanding of IBM Content Navigator integration
Demonstrate an understanding of the security model
Demonstrate the use of the Case Operations Component
Section 3 - Deploying, Testing and Troubleshooting a Case Solution (15%)
Demonstrate an understanding of the deployment structure and its limitations
Demonstrate knowledge of project areas
Demonstrate the use of the Case Manager Administration Client
Demonstrate knowledge of solution deployment troubleshooting
Demonstrate knowledge of solution comparison
Section 4 - Extending a Case Management Solution (16%)
Demonstrate knowledge of integrating custom widgets and business rules
Identify IBM capabilities to extend Case Manager
Demonstrate an understanding of building a custom application using REST service and JavaScript APIs
Demonstrate an understanding of mobile integration
Section 5 - Solution Migration (13%)
Demonstrate an understanding of Case Manager Configuration Manager, Case Manager Administration Client and FileNet Deployment Manager
Demonstrate an understanding of the requirements and steps to migrate a solution
Demonstrate an understanding of configuring security in a production environment
Section 6 - Business Metrics and Analytics (8%)
Demonstrate knowledge of using Case Analyzer
Demonstrate knowledge of using Case Monitor and Cognos RTM
Demonstrate knowledge of using Watson Content Analytics with Enterprise Search
IBM Certified Solution Designer - Case Manager V5.2.1
Job Role Description / Target Audience
This intermediate level certification test certifies that the successful candidate has the knowledge to create the theoretical and/or detailed technical design of an application, solution, and infrastructure using IBM Case Manager v5.2.1 (ICM). Provide expertise to evaluate and choose between alternatives; assist with balancing costs with capabilities and priorities. Identify products / technologies / processes to be included, and determine points of required integration and customization. Identify sizing and capacity issues, as well as conflicts with existing processes or environments.
Recommended Prerequisite Skills
Before preparing for this certification, basic understanding of the following is recommended and assumed for your environment:
- Knowledge of IBM Case Manager
- Knowledge of IBM FileNet Content Platform Engine
- Knowledge of supported Application Servers
- Knowledge of Content Navigator
- Knowledge of Cognos RealTime Monitoring
- Knowledge of Watson Content Analytics
- Knowledge of Box integration
- Knowledge of VCS integration
Number of questions: 62
Time allowed in minutes: 120
Required passing score: 57%
Languages: English
The test contains five sections, totaling 62 multiple-choice questions. The percentages after each section title reflect the approximate distribution of the total question set across the sections.
Section 1 - Planning and Architecture (18%)
Demonstrate an understanding of IBM Case Manager Architecture
Identify solutions best addressed by Case Manager
Identify key differences between development and production environments
Identify integrated products and add-on software capabilities including licensing
Section 2 - Designing a Case Solution (30%)
Demonstrate an understanding of the Case Manager object model
Demonstrate an understanding of Case Builder and its Artifacts
Demonstrate an understanding of external documents
Demonstrate an understanding of Case Task and Process Fragments
Demonstrate an understanding of the Page Designer
Demonstrate an understanding of IBM Content Navigator integration
Demonstrate an understanding of the security model
Demonstrate the use of the Case Operations Component
Section 3 - Deploying, Testing and Troubleshooting a Case Solution (15%)
Demonstrate an understanding of the deployment structure and its limitations
Demonstrate knowledge of project areas
Demonstrate the use of the Case Manager Administration Client
Demonstrate knowledge of solution deployment troubleshooting
Demonstrate knowledge of solution comparison
Section 4 - Extending a Case Management Solution (16%)
Demonstrate knowledge of integrating custom widgets and business rules
Identify IBM capabilities to extend Case Manager
Demonstrate an understanding of building a custom application using REST service and JavaScript APIs
Demonstrate an understanding of mobile integration
Section 5 - Solution Migration (13%)
Demonstrate an understanding of Case Manager Configuration Manager, Case Manager Administration Client and FileNet Deployment Manager
Demonstrate an understanding of the requirements and steps to migrate a solution
Demonstrate an understanding of configuring security in a production environment
Section 6 - Business Metrics and Analytics (8%)
Demonstrate knowledge of using Case Analyzer
Demonstrate knowledge of using Case Monitor and Cognos RTM
Demonstrate knowledge of using Watson Content Analytics with Enterprise Search
IBM Certified Solution Designer - Case Manager V5.2.1
Job Role Description / Target Audience
This intermediate level certification test certifies that the successful candidate has the knowledge to create the theoretical and/or detailed technical design of an application, solution, and infrastructure using IBM Case Manager v5.2.1 (ICM). Provide expertise to evaluate and choose between alternatives; assist with balancing costs with capabilities and priorities. Identify products / technologies / processes to be included, and determine points of required integration and customization. Identify sizing and capacity issues, as well as conflicts with existing processes or environments.
Recommended Prerequisite Skills
Before preparing for this certification, basic understanding of the following is recommended and assumed for your environment:
- Knowledge of IBM Case Manager
- Knowledge of IBM FileNet Content Platform Engine
- Knowledge of supported Application Servers
- Knowledge of Content Navigator
- Knowledge of Cognos RealTime Monitoring
- Knowledge of Watson Content Analytics
- Knowledge of Box integration
- Knowledge of VCS integration
Tuesday, November 1, 2016
Exam 70-734 OEM Preinstallation for Windows 10
Published: June 16, 2016
Languages: English, Japanese
Audiences: IT professionals
Technology: Windows 10, Microsoft Assessment and Deployment Kit (ADK)
Credit toward certification: MCP
This exam measures your ability to accomplish the technical tasks listed below. View video tutorials about the variety of question types on Microsoft exams.
Please note that the questions may test on, but will not be limited to, the topics described in the bulleted text.
Do you have feedback about the relevance of the skills measured on this exam? Please send Microsoft your comments. All feedback will be reviewed and incorporated as appropriate while still maintaining the validity and reliability of the certification process. Note that Microsoft will not respond directly to your feedback. We appreciate your input in ensuring the quality of the Microsoft Certification program.
If you have concerns about specific questions on this exam, please submit an exam challenge.
If you have other questions or feedback about Microsoft Certification exams or about the certification program, registration, or promotions, please contact your Regional Service Center.
Prepare deployments
Prepare the environment
Prepare Assessment and Deployment Kit (ADK), prepare USB, design an answer file, create a default user profile, preserve preinstalled OEM drivers
Identify a business strategy for deploying operating system images
Identify a build-to-order or build-to-plan approach, select a deployment method, implement end-user upgrade paths
Determine hardware configurations
Determine Unified Extensible Firmware Interface (UEFI) requirements, configure network and storage drivers, configure a boot device
Build a Windows Preinstallation Environment (Windows PE or WinPE)
Troubleshoot a problematic installation in WinPE, customize a WinPE installation, create a 32-bit or 64-bit WinPE environment, manage Windows PE packages
Create, capture, and deploy images
Create a reference installation
Set up and capture a reference PC, preinstall Microsoft and third-party desktop applications, set up a Push-Button Restore, evaluate deployment logs, prepare and test Out-of-Box Experience (OOBE)
Determine redistribution licensing requirements
Determine redistribution rights and technical requirements, select licensed recovery types, determine OEM preinstallation requirements
Manage deployments
Manage images
Upgrade a Windows edition, perform online or offline servicing, activate a grace period timer, manage nested images within Windows Imaging File Format (WIMS), add and remove packages, add and remove drivers, set the multilingual deployment of an operating system, manage application updates
Apply a reference installation
Perform drive partitioning, deploy reference and recovery images, set up Push-Button Recovery with REAgentC and BCD commands
Validate an image
Validate an image in audit mode, validate Push-Button Reset, sysprep images to OOBE, identify causes of driver failure, finalize installation, validate licensing requirements and components
Languages: English, Japanese
Audiences: IT professionals
Technology: Windows 10, Microsoft Assessment and Deployment Kit (ADK)
Credit toward certification: MCP
This exam measures your ability to accomplish the technical tasks listed below. View video tutorials about the variety of question types on Microsoft exams.
Please note that the questions may test on, but will not be limited to, the topics described in the bulleted text.
Do you have feedback about the relevance of the skills measured on this exam? Please send Microsoft your comments. All feedback will be reviewed and incorporated as appropriate while still maintaining the validity and reliability of the certification process. Note that Microsoft will not respond directly to your feedback. We appreciate your input in ensuring the quality of the Microsoft Certification program.
If you have concerns about specific questions on this exam, please submit an exam challenge.
If you have other questions or feedback about Microsoft Certification exams or about the certification program, registration, or promotions, please contact your Regional Service Center.
Prepare deployments
Prepare the environment
Prepare Assessment and Deployment Kit (ADK), prepare USB, design an answer file, create a default user profile, preserve preinstalled OEM drivers
Identify a business strategy for deploying operating system images
Identify a build-to-order or build-to-plan approach, select a deployment method, implement end-user upgrade paths
Determine hardware configurations
Determine Unified Extensible Firmware Interface (UEFI) requirements, configure network and storage drivers, configure a boot device
Build a Windows Preinstallation Environment (Windows PE or WinPE)
Troubleshoot a problematic installation in WinPE, customize a WinPE installation, create a 32-bit or 64-bit WinPE environment, manage Windows PE packages
Create, capture, and deploy images
Create a reference installation
Set up and capture a reference PC, preinstall Microsoft and third-party desktop applications, set up a Push-Button Restore, evaluate deployment logs, prepare and test Out-of-Box Experience (OOBE)
Determine redistribution licensing requirements
Determine redistribution rights and technical requirements, select licensed recovery types, determine OEM preinstallation requirements
Manage deployments
Manage images
Upgrade a Windows edition, perform online or offline servicing, activate a grace period timer, manage nested images within Windows Imaging File Format (WIMS), add and remove packages, add and remove drivers, set the multilingual deployment of an operating system, manage application updates
Apply a reference installation
Perform drive partitioning, deploy reference and recovery images, set up Push-Button Recovery with REAgentC and BCD commands
Validate an image
Validate an image in audit mode, validate Push-Button Reset, sysprep images to OOBE, identify causes of driver failure, finalize installation, validate licensing requirements and components
Saturday, October 15, 2016
Exam 70-744 Securing Windows Server 2016 (In development)
Published: November 3, 2016
Languages: English
Audiences: IT professionals
Technology: Windows Server 2016
Credit toward certification: MCSE
Skills measured
This exam measures your ability to accomplish the technical tasks listed below. The percentages indicate the relative weight of each major topic area on the exam. The higher the percentage, the more questions you are likely to see on that content area on the exam. View video tutorials about the variety of question types on Microsoft exams.
Please note that the questions may test on, but will not be limited to, the topics described in the bulleted text.
Do you have feedback about the relevance of the skills measured on this exam? Please send Microsoft your comments. All feedback will be reviewed and incorporated as appropriate while still maintaining the validity and reliability of the certification process. Note that Microsoft will not respond directly to your feedback. We appreciate your input in ensuring the quality of the Microsoft Certification program.
If you have concerns about specific questions on this exam, please submit an exam challenge.
If you have other questions or feedback about Microsoft Certification exams or about the certification program, registration, or promotions, please contact your Regional Service Center.
Implement server hardening solutions (25–30%)
Configure disk and file encryption
Determine hardware and firmware requirements for secure boot and encryption key functionality; deploy BitLocker encryption; deploy BitLocker without a Trusted Platform Module (TPM); deploy BitLocker with a TPM only; configure the Network Unlock feature; configure BitLocker Group Policy settings; enable Bitlocker to use secure boot for platform and BCD integrity validation; configure BitLocker on Clustered Shared Volumes (CSVs) and Storage Area Networks (SANs); implement BitLocker Recovery Process using self-recovery and recovery password retrieval solutions; configure BitLocker for virtual machines (VMs) in Hyper-V; determine usage scenarios for Encrypting File System (EFS); configure the EFS recovery agent; manage EFS and BitLocker certificates, including backup and restore
Implement server patching and updating solutions
Install and configure Windows Server Update Services (WSUS), manage updates using WSUS, create computer groups, configure update approvals and deployments, configure automatic updates, configure WSUS reporting, troubleshoot WSUS configuration and deployments
Implement malware protection
Implement antimalware solution with Windows Defender, integrate Windows Defender with WSUS and Windows Update, configure Windows Defender using Group Policy, configure Windows Defender scans using Windows PowerShell, implement AppLocker rules, implement AppLocker rules using Windows PowerShell, implement Control Flow Guard, implement Code Integrity (Device Guard) Policies, create Code Integrity policy rules, create Code Integrity file rules
Protect credentials
Determine requirements for implementing Credential Guard; configure Credential Guard using Group Policy, WMI, command prompt, and Windows PowerShell; implement NTLM blocking
Create security baselines
Install and configure Security Compliance Manager (SCM); create, view, and import security baselines; deploy configurations to domain and non-domain joined servers
Secure a virtualization infrastructure (5–10%)
Implement a Guarded Fabric solution
Install and configure the Host Guardian Service (HGS), configure Admin-trusted attestation, configure TPM-trusted attestation, configure the Key Protection Service using HGS, migrate Shielded VMs to other guarded hosts, configure Nano Server as TPM attested guarded host, troubleshoot guarded hosts
Implement Shielded and encryption-supported VMs
Determine requirements and scenarios for implementing Shielded VMs, create a Shielded VM using only a Hyper-V environment, enable and configure vTPM to allow an operating system and data disk encryption within a VM, determine requirements and scenarios for implementing encryption-supported VMs, troubleshoot Shielded and encryption-supported VMs
Secure a network infrastructure (10–15%)
Configure Windows Firewall
Configure Windows Firewall with Advanced Security; configure network location profiles; configure and deploy profile rules; configure firewall rules for multiple profiles using Group Policy; configure connection security rules using Group Policy, the GUI management console, or Windows PowerShell; configure Windows Firewall to allow or deny applications, scopes, ports, and users using Group Policy, the GUI management console, or Windows PowerShell; configure authenticated firewall exceptions; import and export settings
Implement a software-defined Distributed Firewall
Determine requirements and scenarios for Distributed Firewall implementation with software-defined networking, determine usage scenarios for Distributed Firewall policies and network security groups
Secure network traffic
Configure IPsec transport and tunnel modes, configure IPsec authentication options, configure connection security rules, implement isolation zones, implement domain isolation, implement server isolation zones, determine SMB 3.1.1 protocol security scenarios and implementations, enable SMB encryption on SMB Shares, configure SMB signing via Group Policy, disable SMB 1.0, secure DNS traffic using DNSSEC and DNS policies, install and configure Microsoft Message Analyzer (MMA) to analyze network traffic
Manage privileged identities (25–30%)
Implement an Enhanced Security Administrative Environment (ESAE) administrative forest design approach
Determine usage scenarios and requirements for implementing ESAE forest design architecture to create a dedicated administrative forest, determine usage scenarios and requirements for implementing clean source principals in an Active Directory architecture
Implement Just-in-Time (JIT) Administration
Create a new administrative (bastion) forest in an existing Active Directory environment using Microsoft Identity Manager (MIM), configure trusts between production and bastion forests, create shadow principals in bastion forest, configure the MIM web portal, request privileged access using the MIM web portal, determine requirements and usage scenarios for Privileged Access Management (PAM) solutions, create and implement MIM policies, implement Just-in-Time administration principals using time-based policies, request privileged access using Windows PowerShell
Implement Just-Enough-Administration (JEA)
Enable a JEA solution on Windows Server 2016; create and configure session configuration files, create and configure role capability files, create a JEA endpoint, connect to a JEA endpoint on a server for administration, view logs, download WMF 5.1 to a Windows Server 2008 R2, configure a JEA endpoint on a server using Desired State Configuration (DSC)
Implement Privileged Access Workstations (PAWs) and User Rights Assignments
Implement a PAWS solution, configure User Rights Assignment group policies, configure security options settings in Group Policy, enable and configure Remote Credential Guard for remote desktop access
Implement Local Administrator Password Solution (LAPS)
Install and configure the LAPS tool, secure local administrator passwords using LAPS, manage password parameters and properties using LAPS
Implement threat detection solutions (15–20%)
Configure advanced audit policies
Determine the differences and usage scenarios for using local audit policies and advanced auditing policies; implement auditing using Group Policy and AuditPol.exe; implement auditing using Windows PowerShell; create expression-based audit policies; configure the Audit PNP Activity policy; configure the Audit Group Membership policy; enable and configure Module, Script Block, and Transcription logging in Windows PowerShell
Install and configure Microsoft Advanced Threat Analytics (ATA)
Determine usage scenarios for ATA; determine deployment requirements for ATA, install and configure ATA Gateway on a dedicated server, install and configure ATA Lightweight Gateway directly on a domain controller, configure alerts in ATA Center when suspicious activity is detected, review and edit suspicious activities on the attack time line
Determine threat detection solutions using Operations Management Suite (OMS)
Determine usage and deployment scenarios for OMS, determine security and auditing functions available for use; determine Log Analytics usage scenarios
Implement workload-specific security (5–10%)
Secure application development and server workload infrastructure
Determine usage scenarios, supported server workloads, and requirements for Nano Server deployments; install and configure Nano Server; implement security policies on Nano Servers using Desired State Configuration (DSC); determine usage scenarios and requirements for Windows Server and Hyper-V containers; install and configure Hyper-V containers
Implement a secure file services infrastructure and Dynamic Access Control (DAC)
Install the File Server Resource Manager (FSRM) role service, configure quotas, configure file screens, configure storage reports, configure file management tasks, configure File Classification Infrastructure (FCI) using FSRM, implement work folders, configure file access auditing, configure user and device claim types, implement policy changes and staging, perform access-denied remediation, create and configure Central Access rules and policies, create and configure resource properties and lists
Languages: English
Audiences: IT professionals
Technology: Windows Server 2016
Credit toward certification: MCSE
Skills measured
This exam measures your ability to accomplish the technical tasks listed below. The percentages indicate the relative weight of each major topic area on the exam. The higher the percentage, the more questions you are likely to see on that content area on the exam. View video tutorials about the variety of question types on Microsoft exams.
Please note that the questions may test on, but will not be limited to, the topics described in the bulleted text.
Do you have feedback about the relevance of the skills measured on this exam? Please send Microsoft your comments. All feedback will be reviewed and incorporated as appropriate while still maintaining the validity and reliability of the certification process. Note that Microsoft will not respond directly to your feedback. We appreciate your input in ensuring the quality of the Microsoft Certification program.
If you have concerns about specific questions on this exam, please submit an exam challenge.
If you have other questions or feedback about Microsoft Certification exams or about the certification program, registration, or promotions, please contact your Regional Service Center.
Implement server hardening solutions (25–30%)
Configure disk and file encryption
Determine hardware and firmware requirements for secure boot and encryption key functionality; deploy BitLocker encryption; deploy BitLocker without a Trusted Platform Module (TPM); deploy BitLocker with a TPM only; configure the Network Unlock feature; configure BitLocker Group Policy settings; enable Bitlocker to use secure boot for platform and BCD integrity validation; configure BitLocker on Clustered Shared Volumes (CSVs) and Storage Area Networks (SANs); implement BitLocker Recovery Process using self-recovery and recovery password retrieval solutions; configure BitLocker for virtual machines (VMs) in Hyper-V; determine usage scenarios for Encrypting File System (EFS); configure the EFS recovery agent; manage EFS and BitLocker certificates, including backup and restore
Implement server patching and updating solutions
Install and configure Windows Server Update Services (WSUS), manage updates using WSUS, create computer groups, configure update approvals and deployments, configure automatic updates, configure WSUS reporting, troubleshoot WSUS configuration and deployments
Implement malware protection
Implement antimalware solution with Windows Defender, integrate Windows Defender with WSUS and Windows Update, configure Windows Defender using Group Policy, configure Windows Defender scans using Windows PowerShell, implement AppLocker rules, implement AppLocker rules using Windows PowerShell, implement Control Flow Guard, implement Code Integrity (Device Guard) Policies, create Code Integrity policy rules, create Code Integrity file rules
Protect credentials
Determine requirements for implementing Credential Guard; configure Credential Guard using Group Policy, WMI, command prompt, and Windows PowerShell; implement NTLM blocking
Create security baselines
Install and configure Security Compliance Manager (SCM); create, view, and import security baselines; deploy configurations to domain and non-domain joined servers
Secure a virtualization infrastructure (5–10%)
Implement a Guarded Fabric solution
Install and configure the Host Guardian Service (HGS), configure Admin-trusted attestation, configure TPM-trusted attestation, configure the Key Protection Service using HGS, migrate Shielded VMs to other guarded hosts, configure Nano Server as TPM attested guarded host, troubleshoot guarded hosts
Implement Shielded and encryption-supported VMs
Determine requirements and scenarios for implementing Shielded VMs, create a Shielded VM using only a Hyper-V environment, enable and configure vTPM to allow an operating system and data disk encryption within a VM, determine requirements and scenarios for implementing encryption-supported VMs, troubleshoot Shielded and encryption-supported VMs
Secure a network infrastructure (10–15%)
Configure Windows Firewall
Configure Windows Firewall with Advanced Security; configure network location profiles; configure and deploy profile rules; configure firewall rules for multiple profiles using Group Policy; configure connection security rules using Group Policy, the GUI management console, or Windows PowerShell; configure Windows Firewall to allow or deny applications, scopes, ports, and users using Group Policy, the GUI management console, or Windows PowerShell; configure authenticated firewall exceptions; import and export settings
Implement a software-defined Distributed Firewall
Determine requirements and scenarios for Distributed Firewall implementation with software-defined networking, determine usage scenarios for Distributed Firewall policies and network security groups
Secure network traffic
Configure IPsec transport and tunnel modes, configure IPsec authentication options, configure connection security rules, implement isolation zones, implement domain isolation, implement server isolation zones, determine SMB 3.1.1 protocol security scenarios and implementations, enable SMB encryption on SMB Shares, configure SMB signing via Group Policy, disable SMB 1.0, secure DNS traffic using DNSSEC and DNS policies, install and configure Microsoft Message Analyzer (MMA) to analyze network traffic
Manage privileged identities (25–30%)
Implement an Enhanced Security Administrative Environment (ESAE) administrative forest design approach
Determine usage scenarios and requirements for implementing ESAE forest design architecture to create a dedicated administrative forest, determine usage scenarios and requirements for implementing clean source principals in an Active Directory architecture
Implement Just-in-Time (JIT) Administration
Create a new administrative (bastion) forest in an existing Active Directory environment using Microsoft Identity Manager (MIM), configure trusts between production and bastion forests, create shadow principals in bastion forest, configure the MIM web portal, request privileged access using the MIM web portal, determine requirements and usage scenarios for Privileged Access Management (PAM) solutions, create and implement MIM policies, implement Just-in-Time administration principals using time-based policies, request privileged access using Windows PowerShell
Implement Just-Enough-Administration (JEA)
Enable a JEA solution on Windows Server 2016; create and configure session configuration files, create and configure role capability files, create a JEA endpoint, connect to a JEA endpoint on a server for administration, view logs, download WMF 5.1 to a Windows Server 2008 R2, configure a JEA endpoint on a server using Desired State Configuration (DSC)
Implement Privileged Access Workstations (PAWs) and User Rights Assignments
Implement a PAWS solution, configure User Rights Assignment group policies, configure security options settings in Group Policy, enable and configure Remote Credential Guard for remote desktop access
Implement Local Administrator Password Solution (LAPS)
Install and configure the LAPS tool, secure local administrator passwords using LAPS, manage password parameters and properties using LAPS
Implement threat detection solutions (15–20%)
Configure advanced audit policies
Determine the differences and usage scenarios for using local audit policies and advanced auditing policies; implement auditing using Group Policy and AuditPol.exe; implement auditing using Windows PowerShell; create expression-based audit policies; configure the Audit PNP Activity policy; configure the Audit Group Membership policy; enable and configure Module, Script Block, and Transcription logging in Windows PowerShell
Install and configure Microsoft Advanced Threat Analytics (ATA)
Determine usage scenarios for ATA; determine deployment requirements for ATA, install and configure ATA Gateway on a dedicated server, install and configure ATA Lightweight Gateway directly on a domain controller, configure alerts in ATA Center when suspicious activity is detected, review and edit suspicious activities on the attack time line
Determine threat detection solutions using Operations Management Suite (OMS)
Determine usage and deployment scenarios for OMS, determine security and auditing functions available for use; determine Log Analytics usage scenarios
Implement workload-specific security (5–10%)
Secure application development and server workload infrastructure
Determine usage scenarios, supported server workloads, and requirements for Nano Server deployments; install and configure Nano Server; implement security policies on Nano Servers using Desired State Configuration (DSC); determine usage scenarios and requirements for Windows Server and Hyper-V containers; install and configure Hyper-V containers
Implement a secure file services infrastructure and Dynamic Access Control (DAC)
Install the File Server Resource Manager (FSRM) role service, configure quotas, configure file screens, configure storage reports, configure file management tasks, configure File Classification Infrastructure (FCI) using FSRM, implement work folders, configure file access auditing, configure user and device claim types, implement policy changes and staging, perform access-denied remediation, create and configure Central Access rules and policies, create and configure resource properties and lists
Subscribe to:
Posts (Atom)
