Month End Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Paloalto Networks Cloud Security Engineer CloudSec-Pro Questions and answers with CertsForce

Viewing page 3 out of 8 pages
Viewing questions 21-30 out of questions
Questions # 21:

Which two roles have access to view the Prisma Cloud policies? (Choose two.)

Options:

A.

Build AND Deploy Security


B.

Auditor


C.

Dev SecOps


D.

Defender Manager


Expert Solution
Questions # 22:

Which action must be taken to enable a user to interact programmatically with the Prisma Cloud APIs and for a nonhuman entity to be enabled for the access keys?

Options:

A.

Create a role with System Admin and generate access keys.


B.

Create a user with a role that has minimal access.


C.

Create a role with Account Group Read Only and assign it to the user.


D.

Create a role and assign it to the Service Account.


Expert Solution
Questions # 23:

Which role does Prisma Cloud play when configuring SSO?

Options:

A.

JIT


B.

Service provider


C.

SAML


D.

Identity provider issuer


Expert Solution
Questions # 24:

An administrator sees that a runtime audit has been generated for a host. The audit message is:

“Service postfix attempted to obtain capability SHELL by executing /bin/sh /usr/libexec/postfix/postfix- script.stop. Low severity audit, event is automatically added to the runtime model”

Which runtime host policy rule is the root cause for this runtime audit?

Options:

A.

Custom rule with specific configuration for file integrity


B.

Custom rule with specific configuration for networking


C.

Default rule that alerts on capabilities


D.

Default rule that alerts on suspicious runtime behavior


Expert Solution
Questions # 25:

One of the resources on the network has triggered an alert for a Default Config policy.

Given the following resource JSON snippet:

Which RQL detected the vulnerability?

A)

Question # 25

B)

C)

D)

Options:

A.

Option A


B.

Option B


C.

Option C


D.

Option D


Expert Solution
Questions # 26:

When configuring SSO how many IdP providers can be enabled for all the cloud accounts monitored by Prisma Cloud?

Options:

A.

2


B.

4


C.

1


D.

3


Expert Solution
Questions # 27:

Which ROL query is used to detect certain high-risk activities executed by a root user in AWS?

Options:

A.

event from cloud.audit_logs where operation IN ( 'ChangePassword', 'ConsoleLogin', 'DeactivateMFADevice', 'DeleteAccessKey' , 'DeleteAlarms' ) AND user = 'root'


B.

event from cloud.security_logs where operation IN ( 'ChangePassword', 'ConsoleLogin', 'DeactivateMFADevice', 'DeleteAccessKey' , 'DeleteAlarms' ) AND user = 'root'


C.

config from cloud.audit_logs where operation IN ( 'ChangePassword', 'ConsoleLogin', 'DeactivateMFADevice', 'DeleteAccessKey', 'DeleteAlarms' ) AND user = 'root'


D.

event from cloud.audit_logs where Risk.Level = 'high' AND user = 'root'


Expert Solution
Questions # 28:

What is the behavior of Defenders when the Console is unreachable during upgrades?

Options:

A.

Defenders continue to alert, but not enforce, using the policies and settings most recently cached before upgrading the Console.


B.

Defenders will fail closed until the web-socket can be re-established.


C.

Defenders will fail open until the web-socket can be re-established.


D.

Defenders continue to alert and enforce using the policies and settings most recently cached before upgrading the Console.


Expert Solution
Questions # 29:

Which command should be used in the Prisma Cloud twistcli tool to scan the nginx:latest image for vulnerabilities and compliance issues?

A)

B)

Question # 29

C)

Question # 29

D)

Options:

A.

Option A


B.

Option B


C.

Option C


D.

Option D


Expert Solution
Questions # 30:

Which resource and policy type are used to calculate AWS Net Effective Permissions? (Choose two.)

Options:

A.

Service Linked Roles


B.

Lambda Function


C.

Amazon Resource Names (ARNs) using Wild Cards


D.

AWS Service Control Policies (SCPs)


Expert Solution
Viewing page 3 out of 8 pages
Viewing questions 21-30 out of questions