Month End Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Paloalto Networks Cloud Security Engineer CloudSec-Pro Questions and answers with CertsForce

Viewing page 1 out of 8 pages
Viewing questions 1-10 out of questions
Questions # 1:

Which two variables must be modified to achieve automatic remediation for identity and access management (IAM) alerts in Azure cloud? (Choose two.)

Options:

A.

API_ENDPOINT


B.

SQS_QUEUE_NAME


C.

SB_QUEUE_KEY


D.

YOUR_ACCOUNT_NUMBER


Expert Solution
Questions # 2:

Which IAM Azure RQL query would correctly generate an output to view users who have sufficient permissions to create security groups within Azure AD and create applications?

Options:

A.

config where api.name = ‘azure-active-directory-authorization-policy’ AND json.rule = defaultUserRolePermissions.allowedToCreateSecurityGroups is true and defaultUserRolePermissions.allowedToCreateApps is true


B.

config from cloud.resource where api.name = ‘azure-active-directory-authorization-policy’ AND json.rule = defaultUserRolePermissions exists


C.

config from network where api.name = ‘azure-active-directory-authorization-policy’ AND json.rule = defaultUserRolePermissions.allowedToCreateSecurityGroups is false and defaultUserRolePermissions.allowedToCreateApps is true


D.

config from cloud.resource where api.name = ‘azure-active-directory-authorization-policy’ AND json.rule = defaultUserRolePermissions.allowedToCreateSecurityGroups is true and defaultUserRolePermissions.allowedToCreateApps is true


Expert Solution
Questions # 3:

A security team has a requirement to ensure the environment is scanned for vulnerabilities. What are three options for configuring vulnerability policies? (Choose three.)

Options:

A.

individual actions based on package type


B.

output verbosity for blocked requests


C.

apply policy only when vendor fix is available


D.

individual grace periods for each severity level


E.

customize message on blocked requests


Expert Solution
Questions # 4:

On which cloud service providers can new API release information for Prisma Cloud be received?

Options:

A.

AWS. Azure. GCP. Oracle, IBM


B.

AWS. Azure. GCP, IBM, Alibaba


C.

AWS. Azure. GCP. Oracle, Alibaba


D.

AWS. Azure. GCP, IBM


Expert Solution
Questions # 5:

An administrator sees that a runtime audit has been generated for a container.

The audit message is:

“/bin/ls launched and is explicitly blocked in the runtime rule. Full command: ls -latr”

Which protection in the runtime rule would cause this audit?

Options:

A.

Networking


B.

File systems


C.

Processes


D.

Container


Expert Solution
Questions # 6:

A user from an organization is unable to log in to Prisma Cloud Console after having logged in the previous day.

Which area on the Console will provide input on this issue?

Options:

A.

SSO


B.

Audit Logs


C.

Users & Groups


D.

Access Control


Expert Solution
Questions # 7:

A security team is deploying Cloud Native Application Firewall (CNAF) on a containerized web application. The application is running an NGINX container. The container is listening on port 8080 and is mapped to host port 80.

Which port should the team specify in the CNAF rule to protect the application?

Options:

A.

443


B.

80


C.

8080


D.

8888


Expert Solution
Questions # 8:

Who can access saved searches in a cloud account?

Options:

A.

Administrators


B.

Users who can access the tenant


C.

Creators


D.

All users with whom the saved search has been shared


Expert Solution
Questions # 9:

Which two offerings will scan container images in Jenkins pipelines? (Choose two.)

Options:

A.

Compute Azure DevOps plugin


B.

Prisma Cloud Visual Studio Code plugin with Jenkins integration


C.

Jenkins Docker plugin


D.

Twistcli


E.

Compute Jenkins plugin


Expert Solution
Questions # 10:

Which role must be assigned to DevOps users who need access to deploy Container and Host Defenders in Compute?

Options:

A.

Cloud Provisioning Admin


B.

Build and Deploy Security


C.

System Admin


D.

Developer


Expert Solution
Viewing page 1 out of 8 pages
Viewing questions 1-10 out of questions