Pass the Paloalto Networks Certified Cybersecurity Associate PCCET Questions and answers with CertsForce

Viewing page 4 out of 5 pages
Viewing questions 31-40 out of questions
Questions # 31:

What does SIEM stand for?

Options:

A.

Security Infosec and Event Management


B.

Security Information and Event Management


C.

Standard Installation and Event Media


D.

Secure Infrastructure and Event Monitoring


Expert Solution
Questions # 32:

Which action must Secunty Operations take when dealing with a known attack?

Options:

A.

Document, monitor, and track the incident.


B.

Limit the scope of who knows about the incident.


C.

Increase the granularity of the application firewall.


D.

Disclose details of lhe attack in accordance with regulatory standards.


Expert Solution
Questions # 33:

Match the DNS record type to its function within DNS.

Question # 33


Expert Solution
Questions # 34:

What does “forensics” refer to in a Security Operations process?

Options:

A.

Collecting raw data needed to complete the detailed analysis of an investigation


B.

Validating cyber analysts’ backgrounds before hiring


C.

Reviewing information about a broad range of activities


D.

Analyzing new IDS/IPS platforms for an enterprise


Expert Solution
Questions # 35:

Web 2.0 applications provide which type of service?

Options:

A.

SaaS


B.

FWaaS


C.

IaaS


D.

PaaS


Expert Solution
Questions # 36:

Which native Windows application can be used to inspect actions taken at a specific time?

Options:

A.

Event Viewer


B.

Timeline inspector


C.

Task Manager


D.

Task Scheduler


Expert Solution
Questions # 37:

Which two network resources does a directory service database contain? (Choose two.)

Options:

A.

Services


B.

/etc/shadow files


C.

Users


D.

Terminal shell types on endpoints


Expert Solution
Questions # 38:

Which security component can detect command-and-control traffic sent from multiple endpoints within a corporate data center?

Options:

A.

Personal endpoint firewall


B.

Port-based firewall


C.

Next-generation firewall


D.

Stateless firewall


Expert Solution
Questions # 39:

In the attached network diagram, which device is the switch?

Question # 39

Options:

A.

A


B.

B


C.

C


D.

D


Expert Solution
Questions # 40:

How does Prisma SaaS provide protection for Sanctioned SaaS applications?

Options:

A.

Prisma SaaS connects to an organizations internal print and file sharing services to provide protection and sharing visibility


B.

Prisma SaaS does not provide protection for Sanctioned SaaS applications because they are secure


C.

Prisma access uses Uniform Resource Locator (URL) Web categorization to provide protection and sharing visibility


D.

Prisma SaaS connects directly to sanctioned external service providers SaaS application service to provide protection and sharing visibility


Expert Solution
Viewing page 4 out of 5 pages
Viewing questions 31-40 out of questions