Pass the CyberArk CyberArk CDE Certification PAM-CDE-RECERT Questions and answers with CertsForce

Viewing page 6 out of 7 pages
Viewing questions 51-60 out of questions
Questions # 51:

Users can be resulted to using certain CyberArk interfaces (e.g.PVWA or PACLI).

Options:

A.

TRUE


B.

FALS


Expert Solution
Questions # 52:

You are creating a Dual Control workflow for a team’s safe.

Which safe permissions must you grant to the Approvers group?

Options:

A.

List accounts, Authorize account request


B.

Retrieve accounts, Access Safe without confirmation


C.

Retrieve accounts, Authorize account request


D.

List accounts, Unlock accounts


Expert Solution
Questions # 53:

Target account platforms can be restricted to accounts that are stored m specific Safes using the Allowed Safes property.

Options:

A.

TRUE


B.

FALSE


Expert Solution
Questions # 54:

Which components support fault tolerance.

Options:

A.

CPM and PVWA


B.

PVWA and PSM


C.

PSM and PTA


D.

CPM and PTA


Expert Solution
Questions # 55:

The primary purpose of exclusive accounts is to ensure non-repudiation (Individual accountability).

Options:

A.

TRUE


B.

FALS


Expert Solution
Questions # 56:

PTA can automatically suspend sessions if suspicious activities are detected in a privileged session, but only if the session is made via the CyberArk PSM.

Options:

A.

True


B.

False, the PTA can suspend sessions whether the session is made via the PSM or not


Expert Solution
Questions # 57:

A customer is moving from an on-premises to a public cloud deployment. What is the best and most cost-effective option to secure the server key?

Options:

A.

Install the Vault in the cloud the same way that you would in an on-premises environment Place the server key in a password protected folder on the operating system


B.

Install the Vault in the cloud the same way that you would in an on-premises environment Purchase a Hardware Security Module to secure the server key


C.

Install the Vault using the Amazon Machine Images and secure the server key using native cloud Key Management Systems


D.

Install the Vault using the Amazon Machine Images and secure the server key with a Hardware Security Module


Expert Solution
Questions # 58:

A company requires challenge/response multi-factor authentication for PSMP sessions. Which server must you integrate with the CyberArk vault?

Options:

A.

LDAP


B.

PKI


C.

SAML


D.

RADIUS


Expert Solution
Questions # 59:

Which pre-requisite step must be completed before installing a Vault?

Options:

A.

Join the server to the domain


B.

install a clean operating system


C.

install anti-virus software


D.

Copy the master CD to a folder on the Vault server


Expert Solution
Questions # 60:

As long as you are a member of the Vault Admins group you can grant any permission on any safe.

Options:

A.

TRUE


B.

FALSE


Expert Solution
Viewing page 6 out of 7 pages
Viewing questions 51-60 out of questions