Question No. 1
What is an event-driven snippet of code that runs on managed infrastructure?
API
Serverless function
Hypervisor
Docker container
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 2
What type of attack redirects the traffic of a legitimate website to a fake website?
Watering hole
Pharming
Spear phishing
Whaling
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 3
What role do containers play in cloud migration and application management strategies?
They enable companies to use cloud-native tools and methodologies.
They are used for data storage in cloud environments.
They serve as a template manager for software applications and services.
They are used to orchestrate virtual machines (VMs) in cloud environments.
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 4
Which scenario highlights how a malicious Portable Executable (PE) file is leveraged as an attack?
Setting up a web page for harvesting user credentials
Laterally transferring the file through a network after being granted access
Embedding the file inside a pdf to be downloaded and installed
Corruption of security device memory spaces while file is in transit
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 5
What is a function of SSL/TLS decryption?
It applies to unknown threat detection only.
It reveals malware within web-based traffic.
It protects users from social engineering.
It identifies loT devices on the internet.
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 6
Which action is unique to the security orchestration, automation, and response (SOAR) platforms?
Prioritizing alerts
Enhancing data collection
Using predefined workflows
Correlating incident data
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 7
Which capability does Cloud Security Posture Management (CSPM) provide for threat detection within Prisma Cloud?
Real-time protection from threats
Alerts for new code introduction
Integration with threat feeds
Continuous monitoring of resources
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 8
Which two processes are critical to a security information and event management (SIEM) platform? (Choose two.)
Detection of threats using data analysis
Automation of security deployments
Ingestion of log data
Prevention of cvbersecurity attacks
Reveal Solution Select all that apply, then reveal solution.
View discussion (0 Comments)
Question No. 9
Which statement describes the process of application allow listing?
It allows only trusted files, applications, and processes to run.
It creates a set of specific applications that do not run on the system.
It encrypts application data to protect the system from external threats.
It allows safe use of applications by scanning files for malware.
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 10
What are two examples of an attacker using social engineering? (Choose two.)
Convincing an employee that they are also an employee
Leveraging open-source intelligence to gather information about a high-level executive
Acting as a company representative and asking for personal information not relevant to the reason for their call
Compromising a website and configuring it to automatically install malicious files onto systems that visit the page
Reveal Solution Select all that apply, then reveal solution.
View discussion (0 Comments)
Question No. 11
Which two services does a managed detection and response (MDR) solution provide? (Choose two.)
Improved application development
Incident impact analysis
Periodic firewall updates
Proactive threat hunting
Reveal Solution Select all that apply, then reveal solution.
View discussion (0 Comments)
Question No. 12
Which technology helps Security Operations Center (SOC) teams identify heap spray attacks on company-owned laptops?
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 13
Which type of firewall should be implemented when a company headquarters is required to have redundant power and high processing power?
Cloud
Physical
Virtual
Containerized
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 14
Which MITRE ATT&CK tactic grants increased permissions to a user account for internal servers of a corporate network?
Impact
Privilege escalation
Data exfiltration
Persistence
Reveal Solution Select one option, then reveal solution.
View discussion (0 Comments)
Question No. 15
Which two descriptions apply to an XDR solution? (Choose two.)
It employs machine learning (ML) to identity threats.
It is designed for reporting on key metrics for cloud environments.
It ingests data from a wide spectrum of sources.
It is focused on single-vector attacks on specific layers of defense.
Reveal Solution Select all that apply, then reveal solution.
View discussion (0 Comments)