Checkpoint 156-915.80 Exam Questions
Check Point Certified Security Expert Update - R80.10 (Page 6 )

Updated On: 17-Feb-2026

The Correlation Unit performs all but which of the following actions:

  1. Marks logs that individually are not events, but may be part of a larger pattern to be identified later
  2. Generates an event based on the Event policy
  3. Assigns a severity level to the event
  4. Takes a new log entry that is part of a group of items that together make up an event, and adds it to an ongoing event

Answer(s): C



The following command is used to verify the CPUSE version:

  1. HostName:0>show installer status build
  2. [Expert@HostName:0]#show installer status
  3. [Expert@HostName:0]#show installer status build
  4. HostName:0>show installer build

Answer(s): A



Which statement is true regarding redundancy?

  1. System Administrator know when their cluster has failed over and can also see why it failed over by using the cphaprob f it command.
  2. ClusterXL offers three different Load Sharing solutions: Unicast, Broadcast, and Multicast.
  3. Machines in a Cluster XL High Availability configuration must be synchronized.
  4. Both Cluster XL and VRRP are fully supported by Gaia and available to all Check Point appliances, open servers, and virtualized environments.

Answer(s): D



Vanessa is expecting a very important Security Report. The Document should be sent as an attachment via e-mail. An e-mail with Security_ report.pdf file was delivered to her e-mail inbox.
When she opened the PDF file, she noticed that the file is basically empty and only few lines of text are in it. The report is missing some graphs, tables and links.
Which component of SandBlast protection is her company using on a Gateway?

  1. SandBlast Threat Emulation
  2. SandBlast Agent
  3. Check Point Protect
  4. SandBlast Threat Extraction

Answer(s): D



Which command collects diagnostic data for analyzing customer setup remotely?

  1. cpinfo
  2. migrate export
  3. sysinfo
  4. cpview

Answer(s): A

Explanation:

CPInfo is an auto-updatable utility that collects diagnostics data on a customer's machine at the time of execution and uploads it to Check Point servers (it replaces the standalone cp_uploader utility for uploading files to Check Point servers).
The CPInfo output file allows analyzing customer setups from a remote location. Check Point support engineers can open the CPInfo file in a demo mode, while viewing actual customer Security Policies and Objects. This allows the in-depth analysis of customer's configuration and environment settings.






Post your Comments and Discuss Checkpoint 156-915.80 exam dumps with other Community members:

Join the 156-915.80 Discussion