Month End Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Paloalto Networks Cloud Security Engineer CloudSec-Pro Questions and answers with CertsForce

Viewing page 2 out of 8 pages
Viewing questions 11-20 out of questions
Questions # 11:

A Prisma Cloud Administrator needs to enable a Registry Scanning for a registry that stores Windows images. Which of the following statement is correct regarding this process?

Options:

A.

They can deploy any type of container defender to scan this registry.


B.

There are Windows host defenders deployed in your environment already.


C.

There are Windows host defenders deployed in your environment already. Therefore, they do not need to deploy any additional defenders.


D.

A defender is not required to configure this type of registry scan.


Expert Solution
Questions # 12:

Which two attributes of policies can be fetched using API? (Choose two.)

Options:

A.

policy label


B.

policy signature


C.

policy mode


D.

policy violation


Expert Solution
Questions # 13:

Which two services require external notifications to be enabled for policy violations in the Prisma Cloud environment? (Choose two.)

Options:

A.

Splunk


B.

QROC


C.

SQS


D.

Email


Expert Solution
Questions # 14:

Which option identifies the Prisma Cloud Compute Edition?

Options:

A.

Package installed with APT


B.

Downloadable, self-hosted software


C.

Software-as-a-Service (SaaS)


D.

Plugin to Prisma Cloud


Expert Solution
Questions # 15:

The development team wants to block Cross Site Scripting attacks from pods in its environment. How should the team construct the CNAF policy to protect against this attack?

Options:

A.

create a Host CNAF policy, targeted at a specific resource, check the box for XSS attack protection, and set the action to “prevent”.


B.

create a Container CNAF policy, targeted at a specific resource, check the box for XSS attack protection, and set the action to alert.


C.

create a Container CNAF policy, targeted at a specific resource, check the box for XSS protection, and set the action to prevent.


D.

create a Container CNAF policy, targeted at a specific resource, and they should set “Explicitly allowed inbound IP sources” to the IP address of the pod.


Expert Solution
Questions # 16:

You are an existing customer of Prisma Cloud Enterprise. You want to onboard a public cloud account and immediately see all of the alerts associated with this account based off ALL of your tenant’s existing enabled policies. There is no requirement to send alerts from this account to a downstream application at this time.

Which option shows the steps required during the alert rule creation process to achieve this objective?

Options:

A.

Ensure the public cloud account is assigned to an account group Assign the confirmed account group to alert ruleSelect “select all policies” checkbox as part of the alert rule Confirm the alert rule


B.

Ensure the public cloud account is assigned to an account group Assign the confirmed account group to alert ruleSelect one or more policies checkbox as part of the alert rule Confirm the alert rule


C.

Ensure the public cloud account is assigned to an account group Assign the confirmed account group to alert ruleSelect one or more policies as part of the alert rule Add alert notificationsConfirm the alert rule


D.

Ensure the public cloud account is assigned to an account group Assign the confirmed account group to alert ruleSelect “select all policies” checkbox as part of the alert rule Add alert notificationsConfirm the alert rule


Expert Solution
Questions # 17:

Which two statements apply to the Defender type Container Defender - Linux?

Options:

A.

It is implemented as runtime protection in the userspace.


B.

It is deployed as a service.


C.

It is deployed as a container.


D.

It is incapable of filesystem runtime defense.


Expert Solution
Questions # 18:

What is the most reliable and extensive source for documentation on Prisma Cloud APIs?

Options:

A.

prisma.pan.dev


B.

docs.paloaltonetworks.com


C.

Prisma Cloud Administrator’s Guide


D.

Live Community


Expert Solution
Questions # 19:

A Prisma Cloud administrator is tasked with pulling a report via API. The Prisma Cloud tenant is located on app2.prismacloud.io.

What is the correct API endpoint?

Options:

A.

https://api.prismacloud.io


B.

https://api2.eu.prismacloud.io


C.

httsp://api.prismacloud.cn


D.

https://api2.prismacloud.io


Expert Solution
Questions # 20:

Under which tactic is “Exploit Public-Facing Application” categorized in the ATT&CK framework?

Options:

A.

Defense Evasion


B.

Initial Access


C.

Execution


D.

Privilege Escalation


Expert Solution
Viewing page 2 out of 8 pages
Viewing questions 11-20 out of questions