Palo Alto Networks New 2021 PCCSE Test Tutorial (Updated 87 Questions)
PCCSE Exam Questions Dumps, Selling Palo Alto Networks Products
NEW QUESTION 26
An administrator needs to write a script that automatically deactivates access keys that have not been used for
30 days In which order should the API calls be used to accomplish this task? (Drag the steps into the correct order from the first step to the last.)
Answer:
Explanation:
NEW QUESTION 27
A customer wants to scan a serverless function as part of a build process.
Which twistcli command can be used to scan serverless functions?
- A. twistcli serverless AWS <SERVERLESS_FUNCTION ZIP>
- B. twistcli scan serverless <SERVERLESS_FUNCTION Z1P>
- C. twistcli function scan <SERVERLESS_FUNCT10N ZIP>
- D. twistcli serverless scan <SERVERLESS_FUNCTION.ZIP>
Answer: D
NEW QUESTION 28
The compliance team needs to associate Prisma Cloud policies with compliance frameworks. Which option should the team select to perform this task?
- A. Policies
- B. Alert Rules
- C. Custom Compliance
- D. Compliance
Answer: D
NEW QUESTION 29
You are an existing customer of Prisma Cloud Enterprise. You want to onboard a public cloud account and immediately see all of the alerts associated with this account based off ALL of your tenant's existing enabled policies. There is no requirement to send alerts from this account to a downstream application at this time.
Which options shows the steps required during the alert rule creation process to achieve this objective?
- A. Ensure the public cloud account is assigned to an account group
Assign the confirmed account group to alert rule
Select one or more policies as part of the alert rule
Add alert notifications
Confirm the alert rule - B. Ensure the public cloud account is assigned to an account group
Assign the confirmed account group to alert rule
Select "select all policies" checkbox as part of the alert rule
Add alert notifications
Confirm the alert rule - C. Ensure the public cloud account is assigned to an account group
Assign the confirmed account group to alert rule
Select one or more policies checkbox as part of the alert rule
Confirm the alert rule - D. Ensure the public cloud account is assigned to an account group
Assign the confirmed account group to alert rule
Select "select all policies" checkbox as part of the alert rule
Confirm the alert rule
Answer: A
NEW QUESTION 30
A customer has a requirement to scan serverless functions for vulnerabilities. Which three settings are required to configure serverless scanning? (Choose three )
- A. Console Address
- B. Region
- C. Credential
- D. Defender Name
- E. Provider
Answer: A,D,E
NEW QUESTION 31
You wish to create a custom policy with build and run subtypes.
Match the query types for each example.
(Select your answer from the pull-down list. Answers may be used more than once or not at all.)
Answer:
Explanation:
NEW QUESTION 32
Which statement about build and run policies is true?
- A. Every type of policy has auto-remediation enabled by default.
- B. Run policies monitor network activities in the environment and check for potential issues during runtime
- C. Build policies enable you to check for security misconfigurations in the laC templates.
- D. The four main types of policies are Audit Events. Build. Network, and Run.
Answer: B
NEW QUESTION 33
Per security requirements, an administrator needs to provide a list of people who are receiving e-mails for Prisma Cloud alerts Where can the administrator locate this list of e-mail recipients'?
- A. Users section within Settings.
- B. Set Alert Notification section within an Alert Rule.
- C. Target section within an Alert Rule
- D. Notification Template section within Alerts.
Answer: A
NEW QUESTION 34
The development team wants to block Cross Site Scripting attacks from pods its environment How should the team construct the CNAF policy to protect against this attack?
- A. create a Container CNAF policy, targeted at a specific resource, and they should set "Explicitly allowed inbound IP sources" to the IP address of the pod.
- B. create a Host CNAF policy targeted at a specific resource, check the box for XSS attack protection and set the action to "prevent"
- C. create a Container CNAF policy, targeted at a specific resource, check the box for XSS attack protection and set the action to prevent
- D. create a Container CNAF policy, targeted at a specific resource, check the box for XSS attack protection and set the action to alert
Answer: B
NEW QUESTION 35
You wish to create a custom policy with build and run subtypes. Match the query types for each example.
(Select your answer from the pull-down list. Answers may be used more than once or not at all.)
Answer:
Explanation:
Reference:
https://docs.paloaltonetworks.com/prisma/prisma-cloud/prisma-cloud-admin/prisma-cloud-policies/create-a- policy.html
NEW QUESTION 36
An organization wants to be notified immediately to any "High Seventy" alerts for the account group
"Clinical Trials" via Slack Which option shows the steps should the organization can use to achieve this goal?
- A. 1. Under the "Select Policies" tab filter on seventy and select "High"
2. Under the Set Alert Notification tab choose Slack and populate the
3. Set Frequency to "As it Happens"
4. Configure Slack Integration
5. Create an Alert rule - B. 1 Configure Slack Integration
2. Create an alert rule
3. Under the "Select Policies" tab, filter on seventy and select "High"
4. Under the Set Alert Notification tab- choose Slack and populate the channel
5. Set Frequency to "As it Happens" - C. 1. Configure Slack Integration
2 Create an alert rule and select "Clinical Trials" as the account group
3. Under the "Select Policies" tab filter on seventy and select "High"
4. Under the Set Alert Notification tab choose Slack and populate the channel
5. Set Frequency to "As it Happens" - D. 1. Create an alert rule and select "Clinical Trials" as the account group
2. Under the "Select Policies" tab filter on seventy and select "High"
3. Under the Set Alert Notification tab choose Slack and populate the channel
4. Set Frequency to "As it Happens"
5. Set up the Slack Integration to complete the configuration
Answer: C
NEW QUESTION 37
A customer is reviewing Container audits, and an audit has identified a cryptominer attack. Which three options could have generated this audit? (Choose three.)
- A. Common cryptominer process name was found
- B. High CPU usage over time for the container is detected.
- C. The mined currency is associated with a user token.
- D. The value of the mined currency exceeds $100.
- E. Common cryptominer port usage was found.
Answer: A,C,E
NEW QUESTION 38
The compliance team needs to associate Prisma Cloud policies with compliance frameworks. Which option should the team select to perform this task?
- A. Policies
- B. Alert Rules
- C. Custom Compliance
- D. Compliance
Answer: A
Explanation:
Reference:
compliance/compliance-dashboard.html
NEW QUESTION 39
Which component(s), if any will Palo Alto Networks host and run when a customer purchases Prisma Cloud Enterprise Edition?
- A. twistcli
- B. Jenkins
- C. Console
- D. Defenders
Answer: A
NEW QUESTION 40
A business unit has acquired a company that has a very large AWS account footprint. The plan is to immediately start onboarding the new company's AWS accounts into Prisma Cloud Enterprise tenant immediately. The current company is currently not using AWS Organizations and will require each account to be onboarded individually.
The business unit has decided to cover the scope of this action and determined that a script should be written to onboard each of these accounts with general settings to gain immediate posture visibility across the accounts.
Which API endpoint will specifically add these accounts into the Prisma Cloud Enterprise tenant?
- A. https://api.prismacloud.io/cloud/aws
- B. https://api.prismacloud.io/account/aws
- C. https://api.prismacloud.io/accountgroup/aws
- D. https://api.prismacloud.io/cloud/
Answer: B
NEW QUESTION 41
The Prisma Cloud administrator has configured a new policy.
Which steps should be used to assign this policy to a compliance standard?
- A. Edit the policy, go to step 3 (Compliance Standards), click + at the bottom select the compliance standard, fill in the other boxes, and then click Confirm
- B. Custom policies cannot be added to existing standards.
- C. Open the Compliance Standards section of the policy, and then save.
- D. Create the Compliance Standard from Compliance tab. and then select Add to Policy.
Answer: A
NEW QUESTION 42
A DevOps lead reviewed some system logs and notices some odd behavior that could be a data exfiltration attempt The DevOps lead only has access to vulnerability data in Prisma Cloud Compute, so the DevOps lead passes this information to SecOps Which pages in Prisma Cloud Compute can the SecOps lead use to investigate the runtime aspects of this attack?
- A. The SecOps lead should investigate the attack using Vulnerability Explorer and Runtime Radar
- B. The SecOps lead should use the Incident Explorer page and Monitor > Events > Container Audits
- C. The SecOps lead should review the vulnerability scans in the CI/CD process to determine blame
- D. The SecOps lead should use Incident Explorer and Compliance Explorer.
Answer: D
NEW QUESTION 43
A security team notices a number of anomalies under Monitor > Events The incident response team works with the developers to determine that these anomalies are false positives.
What will be the effect if the security team chooses to Relearn on this image?
- A. The model is deleted and returns to the initial learning state
- B. The model is deleted, and Defender will releam for 24 hours.
- C. The anomalies detected will automatically be added to the model.
- D. The model is retained, and any new behavior observed during the new learning period will be added to the existing model
Answer: B
NEW QUESTION 44
You are tasked with configuring a Prisma Cloud build policy for Terraform. What type of query is necessary to complete this policy?
- A. Terraform
- B. CloudFormation
- C. JSON
- D. YAML I
Answer: C
NEW QUESTION 45
Which three steps are involved in onboarding an account for Data Security? (Choose three.)
- A. Create a S3 bucket
- B. Create a read-only role with in-line policies
- C. Create a Cloudtrail with SNS Topic
- D. Enable Flow Logs
- E. Enter the RoleARN and SNSARN
Answer: A,C,D
NEW QUESTION 46
......
How to study for the Palo-Alto-Networks PCCSE: Prisma Certified Cloud Security Engineer Exam
PCCSE practice exams and PCCSE practice tests can aid a lot in preparations. The test is very useful. Smart applicants who want to create a stable base on both examination subjects and associated technology typically pair video lectures with research guidelines to benefit the two, but a key preparatory method is discovered that most applicants for the practice tests sometimes forget.
PCCSE Practice exams are designed to make the actual examination experience comfortable for students. Statistics showed that most students fail to fear the unexpected not because of this training but because of examination anxiety. The expert team of Prep4away advises that you make some comments on these subjects with PCCSE dumps published by our expert team that will help you clear this review with positive grade.
For more info visit:
Palo Alto Networks PCCSE Exam Reference
Exam Information and Practice Material
PCCSE Cert Guide PDF 100% Cover Real Exam Questions: https://www.prep4away.com/Palo-Alto-Networks-certification/braindumps.PCCSE.ete.file.html
Pass PCCSE Review Guide, Reliable PCCSE Test Engine: https://drive.google.com/open?id=18ck0y6HaVCRTCLddTLReaMiVvUllmHoY