New Year Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Pass the Paloalto Networks Cloud Security Engineer CloudSec-Pro Questions and answers with CertsForce

Viewing page 6 out of 8 pages
Viewing questions 51-60 out of questions
Questions # 51:

A customer wants to monitor its Amazon Web Services (AWS) accounts via Prisma Cloud, but only needs the resource configuration to be monitored at present.

Which two pieces of information are needed to onboard this account? (Choose two.)

Options:

A.

External ID


B.

CloudTrail


C.

Active Directory ID


D.

RoleARN


Expert Solution
Questions # 52:

What are the three states of the Container Runtime Model? (Choose three.)

Options:

A.

Initiating


B.

Learning


C.

Active


D.

Running


E.

Archived


Expert Solution
Questions # 53:

A customer has serverless functions that are deployed in multiple clouds.

Which serverless cloud provider is covered be “overly permissive service access” compliance check?

Options:

A.

Alibaba


B.

GCP


C.

AWS


D.

Azure


Expert Solution
Questions # 54:

Prisma Cloud Compute has been installed on Onebox. After Prisma Cloud Console has been accessed. Defender is disconnected and keeps returning the error "No console connectivity" in the logs.

What could be causing the disconnection between Console and Defender in this scenario?

Options:

A.

Port 8083 is not open for Console and Defender communication.


B.

The license key provided to the Console is invalid.


C.

Port 8084 is not open for Console and Defender communication.


D.

Onebox script installed an older version of the Defender.


Expert Solution
Questions # 55:

What is the default namespace created by Defender DaemonSet during deployment?

Options:

A.

Redlock


B.

Defender


C.

Twistlock


D.

Default


Expert Solution
Questions # 56:

One of the resources on the network has triggered an alert for a Default Config policy.

Given the following resource JSON snippet:

Which RQL detected the vulnerability?

A)

Question # 56

B)

C)

D)

Options:

A.

Option A


B.

Option B


C.

Option C


D.

Option D


Expert Solution
Questions # 57:

A customer's Security Operations Center (SOC) team wants to receive alerts from Prisma Cloud via email once a day about all policies that have a violation, rather than receiving an alert every time a new violation occurs.

Which alert rule configuration meets this requirement?

Options:

A.

Configure an alert rule with all the defaults except selecting email within the "Alert Notifications" tab and specifying recipient.


B.

Configure an alert rule. Under the "Policies" tab, select "High Risk Severity Policies." In the "Set Alert Notifications" tab, select "Email > Recurring," set to repeat every 1 day, and enable "Email."


C.

Set up email integrations under the "Integrations" tab in "Settings" and create a notification template.


D.

Configure an alert rule. Under the "Policies" tab, select "All Policies." In the "Set Alert Notifications" tab, select "Email > Recurring," set to repeat every 1 day, and then enable "Email."


Expert Solution
Questions # 58:

Which two variables must be modified to achieve automatic remediation for identity and access management (IAM) alerts in Azure cloud? (Choose two.)

Options:

A.

API_ENDPOINT


B.

SQS_QUEUE_NAME


C.

SB_QUEUE_KEY


D.

YOUR_ACCOUNT_NUMBER


Expert Solution
Questions # 59:

What are two key requirements for integrating Okta with Prisma Cloud when multiple Amazon Web Services (AWS) cloud accounts are being used? (Choose two.)

Options:

A.

Super Administrator permissions


B.

A valid subscription for the IAM security module


C.

An Okta API token for the primary AWS account


D.

Multiple instances of the Okta app


Expert Solution
Questions # 60:

Which two CI/CD plugins are supported by Prisma Cloud as part of its Code Security? (Choose two.)

Options:

A.

Checkov


B.

Visual Studio Code


C.

CircleCI


D.

IntelliJ


Expert Solution
Viewing page 6 out of 8 pages
Viewing questions 51-60 out of questions