New Year Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Paloalto Networks Cloud Security Engineer CloudSec-Pro Questions and answers with CertsForce

Viewing page 5 out of 8 pages
Viewing questions 41-50 out of questions
Questions # 41:

Which Prisma Cloud policy type can protect against malware?

Options:

A.

Event


B.

Network


C.

Config


D.

Data


Expert Solution
Questions # 42:

Which Defender type performs registry scanning?

Options:

A.

Serverless


B.

Container


C.

Host


D.

RASP


Expert Solution
Questions # 43:

A customer has Prisma Cloud Enterprise and host Defenders deployed.

What are two options that allow an administrator to upgrade Defenders? (Choose two.)

Options:

A.

with auto-upgrade, the host Defender will auto-upgrade.


B.

auto deploy the Lambda Defender.


C.

click the update button in the web-interface.


D.

generate a new DaemonSet file.


Expert Solution
Questions # 44:

Which alerts are fixed by enablement of automated remediation?

Options:

A.

All applicable open alerts regardless of when they were generated, with alert status updated to "resolved"


B.

Only the open alerts that were generated before the enablement of remediation, with alert status updated to "resolved"


C.

All applicable open alerts regardless of when they were generated, with alert status updated to "dismissed"


D.

Only the open alerts that were generated after the enablement of remediation, with alert status updated to "resolved"


Expert Solution
Questions # 45:

Prisma Cloud supports which three external systems that allow the import of vulnerabilities and provide additional context on risks in the cloud? (Choose three.)

Options:

A.

Splunk


B.

Qualys


C.

Amazon Inspector


D.

Amazon GuardDuty


E.

ServiceNow


Expert Solution
Questions # 46:

What will happen when a Prisma Cloud Administrator has configured agentless scanning in an environment that also has Host and Container Defenders deployed?

Options:

A.

Agentless scan will automatically be disabled, so Defender scans are the only scans occurring.


B.

Agentless scans do not conflict with Defender scans, so both will run.


C.

Defender scans will automatically be disabled, so agentless scans are the only scans occurring.


D.

Both agentless and Defender scans will be disabled and an error message will be received.


Expert Solution
Questions # 47:

Which two integrated development environment (IDE) plugins are supported by Prisma Cloud as part of its Code Security? (Choose two.)

Options:

A.

Visual Studio Code


B.

IntelliJ


C.

BitBucket


D.

CircleCI


Expert Solution
Questions # 48:

An administrator wants to enforce a rate limit for users not being able to post five (5) .tar.gz files within five (5) seconds.

What does the administrator need to configure?

Options:

A.

A ban for DoS protection with an average rate of 5 and file extensions match on .tar.gz on WAAS


B.

A ban for DoS protection with a burst rate of 5 and file extensions match on .tar.gz on CNNF


C.

A ban for DoS protection with a burst rate of 5 and file extensions match on .tar gz on WAAS


D.

A ban for DoS protection with an average rate of 5 and file extensions match on .tar.gz on CNNF


Expert Solution
Questions # 49:

Who can access saved searches in a cloud account?

Options:

A.

Administrators


B.

Users who can access the tenant


C.

Creators


D.

All users with whom the saved search has been shared


Expert Solution
Questions # 50:

A manager informs the SOC that one or more RDS instances have been compromised and the SOC needs to make sure production RDS instances are NOT publicly accessible.

Which action should the SOC take to follow security best practices?

Options:

A.

Enable “AWS S3 bucket is publicly accessible” policy and manually remediate each alert.


B.

Enable “AWS RDS database instance is publicly accessible” policy and for each alert, check that it is a production instance, and then manually remediate.


C.

Enable “AWS S3 bucket is publicly accessible” policy and add policy to an auto-remediation alert rule.


D.

Enable “AWS RDS database instance is publicly accessible” policy and add policy to an auto-remediation alert rule.


Expert Solution
Viewing page 5 out of 8 pages
Viewing questions 41-50 out of questions