Course 2023 PCCSE Test Prep Training Practice Exam Download [Q109-Q128]

Share

Course 2023 PCCSE Test Prep Training Practice Exam Download

PCCSE Exam Info and Free Practice Test Professional Quiz Study Materials

NEW QUESTION # 109
Given this information:
* The Console is located at https//prisma-console mydomain local
* The username is ciuser
* The password is password123
* The Image to scan is myimage latest
Which twistcli command should be used to scan a Container for vulnerabilities and display the details about each vulnerability?

  • A. twistcli images scan -address https //prisma-console mydomain local -u ciuser -p password123 -details myimage latest
  • B. twistcli images scan -console-address prisma-console mydomain local -u ciuser -p password!23
    -vulnerability-details myimage.latest
  • C. twistcli images scan -console-address https //prisma-console mydomain local -u ciuser -p password123 -details myimage latest
  • D. twistcli images scan -address prisma-console mydomain local -u ciuser -p password123
    -vulnerability-details myimage latest

Answer: B


NEW QUESTION # 110
You have onboarded a public cloud account into Prisma Cloud Enterprise Configuration Resource ingestion is visible in the Asset Inventory for the onboarded account, but no alerts are being generated for the configuration assets in the account Config policies are enabled in the Prisma Cloud Enterprise tenant, with those policies associated to existing alert rules RQL statements on the Investigate matching those policies return config resource results successfully Why are no alerts being generated''

  • A. The public cloud account is not associated with an alert notification.
  • B. The public cloud account does not have audit trail ingestion enabled.
  • C. The public cloud account does not have access to configuration resources.
  • D. The public cloud account is not associated with an alert rule

Answer: A


NEW QUESTION # 111
A customer wants to be notified about port scanning network activities in their environment Which policy type detects this behavior?

  • A. Network
  • B. Config
  • C. Port Scan
  • D. Anomaly

Answer: D


NEW QUESTION # 112
What is the order of steps in a Jenkins pipeline scan?
(Drag the steps into the correct order of occurrence, from the first step to the last.)

Answer:

Explanation:


NEW QUESTION # 113
Which alert deposition severity must be chosen to generate low and high severity alerts in the Anomaly settings when user wants to report on an unknown browser and OS, impossible time travel, or both due to account hijacking attempts?

  • A. Aggressive
  • B. Conservative
  • C. Moderate
  • D. High

Answer: C


NEW QUESTION # 114
Which two fields are required to configure SSO in Prisma Cloud? (Choose two.)

  • A. Identity Provider Issuer
  • B. Certificate
  • C. Prisma Cloud Access SAML URL
  • D. Identity Provider Logout URL

Answer: A,C


NEW QUESTION # 115
An administrator has been tasked with creating a custom service that will download any existing compliance report from a Prisma Cloud Enterprise tenant.
In which order will the APIs be executed for this service?
(Drag the steps into the correct order of occurrence, from the first step to the last.)

Answer:

Explanation:


NEW QUESTION # 116
You wish to create a custom policy with build and run subtypes. Match the query types for each example.
(Select your answer from the pull-down list. Answers may be used more than once or not at all.)

Answer:

Explanation:

Reference:
https://docs.paloaltonetworks.com/prisma/prisma-cloud/prisma-cloud-admin/prisma-cloud-policies/create-a- policy.html


NEW QUESTION # 117
On which cloud service providers can you receive new API release information for Prisma Cloud?

  • A. AWS, Azure, GCP, Oracle, Alibaba
  • B. AWS, Azure, GCP, IBM
  • C. AWS, Azure, GCP, Oracle, IBM
  • D. AWS, Azure, GCP, IBM, Alibaba

Answer: A


NEW QUESTION # 118
Which three incident types will be reflected in the Incident Explorer section of Runtime Defense? (Choose three.)

  • A. SQL Injection
  • B. Crypto miners
  • C. Cross-Site Scripting
  • D. Port Scanning
  • E. Brute Force

Answer: A,D,E


NEW QUESTION # 119
A customer has a requirement to automatically protect all Lambda functions with runtime protection. What is the process to automatically protect all the Lambda functions?

  • A. Configure a manually embedded Lambda Defender.
  • B. Configure a serverless auto-protect rule for the functions.
  • C. Configure a function scan policy from the Defend/Vulnerabilities/Functions page.
  • D. Configure serverless radar from the Defend/Compliance/Cloud Platforms page.

Answer: B


NEW QUESTION # 120
An administrator needs to write a script that automatically deactivates access keys that have not been used for
30 days.
In which order should the API calls be used to accomplish this task? (Drag the steps into the correct order from the first step to the last.) Select and Place:

Answer:

Explanation:

Explanation
A picture containing graphical user interface Description automatically generated


NEW QUESTION # 121
Anomaly policy uses which two logs to identify unusual network and user activity? (Choose two.)

  • A. Users
  • B. Traffic
  • C. Network flow
  • D. Audit

Answer: C,D


NEW QUESTION # 122
A Prisma Cloud administrator is onboarding a single GCP project to Prisma Cloud. Which two steps can be performed by the Terraform script? (Choose two.)

  • A. publish the flow log to a storage bucket.
  • B. enable flow logs for Prisma Cloud.
  • C. enable the required APIs for Prisma Cloud.
  • D. create the Prisma Cloud role.

Answer: B,C


NEW QUESTION # 123
Which two statements are true about the differences between build and run config policies? (Choose two.)

  • A. Run policies monitor resources, and check for potential issues after these cloud resources are deployed.
  • B. Run policies monitor network activities in your environment, and check for potential issues during runtime.
  • C. Build policies enable you to check for security misconfigurations in the IaC templates and ensure that these issues do not get into production.
  • D. Build and Audit Events policies belong to the configuration policy set.
  • E. Run and Network policies belong to the configuration policy set.

Answer: B,D


NEW QUESTION # 124
Order the steps involved in onboarding an AWS Account for use with Data Security feature.

Answer:

Explanation:


NEW QUESTION # 125
In which two ways can Prisma Cloud images be retrieved in Prisma Cloud Compute Self-Hosted Edition? (Choose two.)

  • A. Download Prisma Cloud images from github.paloaltonetworks.com.
  • B. Retrieve Prisma Cloud images using URL auth by embedding an access token.
  • C. Authenticate with Prisma Cloud registry, and then pull the images from the Prisma Cloud registry.
  • D. Pull the images from the Prisma Cloud registry without any authentication.

Answer: B,C


NEW QUESTION # 126
Move the steps to the correct order to set up and execute a serverless scan using AWS DevOps.

Answer:

Explanation:

Explanation
Graphical user interface, text, application Description automatically generated


NEW QUESTION # 127
Which statement accurately characterizes SSO Integration on Prisma Cloud?

  • A. Prisma Cloud supports IdP initiated SSO, and its SAML endpoint supports the POST and GET methods.
  • B. An administrator can configure different Identity Providers (IdP) for all the cloud accounts that Prisma Cloud monitors.
  • C. An administrator who needs to access the Prisma Cloud API can use SSO after configuration.
  • D. Okta, Azure Active Directory, PingID, and others are supported via SAML.

Answer: A

Explanation:
Section: (none)
Explanation


NEW QUESTION # 128
......

Get 100% Authentic Palo Alto Networks PCCSE Dumps with Correct Answers: https://www.examboosts.com/Palo-Alto-Networks/PCCSE-practice-exam-dumps.html

Accurate Hot Selling PCCSE Exam Dumps 2023 Newly Released: https://drive.google.com/open?id=10SluNna1IgocncA2rkwXBYd4kOlF7WzQ