CheckPoint 156-590 Exam Overview:
| Certification Vendor: | Check Point |
| Exam Name: | Check Point Certified Threat Prevention Specialist (CTPS) R81.20 |
| Exam Number: | 156-590 |
| Certificate Validity Period: | 3 years |
| Available Languages: | English |
| Exam Price: | $250 USD |
| Passing Score: | 700 / 1000 |
| Exam Format: | Multiple Choice, Scenario-based |
| Real Exam Qty: | 75 |
| Exam Duration: | 90 minutes |
| Related Certifications: | Check Point Certified Security Administrator (CCSA) Check Point Certified Security Expert (CCSE) |
| Recommended Training: | Check Point Certified Threat Prevention Specialist (CTPS) R81.20 Training Course |
| Exam Registration: | Pearson VUE Registration |
| Sample Questions: | CheckPoint 156-590 Sample Questions |
| Exam Way: | Online proctored or Onsite at Pearson VUE test centers |
| Pre Condition: | Recommended: Check Point Certified Security Administrator (CCSA) certification or equivalent knowledge; 1–2 years of experience with Check Point security solutions |
| Official Syllabus URL: | https://www.checkpoint.com/training-and-certification/certification/certified-threat-prevention-specialist-ctps/ |
CheckPoint 156-590 Exam Syllabus Topics:
| Section | Weight | Objectives |
|---|---|---|
| Topic 1: Anti-Virus and Anti-Bot Protections | 20% | - Enable and configure Anti-Virus and Anti-Bot blades - DNS reputation and threat intelligence integration - Malware detection and botnet communication blocking |
| Topic 2: Logs, Analysis and Troubleshooting | 15% | - Analyze logs and traffic patterns - Exceptions, exclusions and penalty box - SmartEvent configuration and monitoring |
| Topic 3: IPS Protections | 20% | - Enable, configure and update IPS protections
|
| Topic 4: Performance and Optimization | 10% | - Null profiles and panic button protocol - Performance analysis and tuning |
| Topic 5: Threat Prevention Policy Profiles | 15% | - Profile application and validation - Create and configure custom profiles - Integrate Anti-Bot, Anti-Virus and IPS settings |
| Topic 6: Policy Layers and Rules | 10% | - Rule configuration with custom profiles - Structure and manage layered policies |
| Topic 7: Threat Prevention Foundations | 10% | - Security environment verification and connectivity - Evolution and core concepts of threat prevention |
CheckPoint Check Point Certified Threat Prevention Specialist (CTPS) Sample Questions:
1. What is the recommended setting for Anti-Virus and why?
A) Hold because it is Pre-infection and inspects a limited subset of traffic
B) Hold because it inspects a limited subset of traffic
C) Background because it is Post-infection
D) Background because it inspects a large subset of traffic
2. What are the common features included in the NGFW, NGTP and SNBT packages, respectively?
A) Firewall, IPS, Antivirus, Threat Emulation
B) Firewall, IPS, Antivirus, Antibot
C) Firewall, Identity Awareness, Content Awareness, and IPS
D) Firewall, Antivirus, Threat Emulation
3. What are the logical components of a SNORT rule?
A) Rule Header and Rule Options
B) Rule start / rule stop
C) Rule start / rule options
D) Rule Header / rule body
4. What is necessary to do in order for the IPS Core Protection to take effect?
A) Perform "Install Database" on the Management Server.
B) Install the Threat Prevention Policy.
C) Nothing is to be done, since the Core Protection settings are immediately active.
D) Install the Access Control Policy.
5. Which of the following is NOT a valid Blade bundle?
A) Next Generation Firewall
B) Next Generation Threat Prevention
C) SandBlast
D) Next Generation Full Protection
Solutions:
| Question # 1 Answer: D | Question # 2 Answer: C | Question # 3 Answer: A | Question # 4 Answer: B | Question # 5 Answer: D |

We're so confident of our products that we provide no hassle product exchange.


By Ruby


