[Dec 08, 2021] Download Free Oracle 1Z0-1070-20 Real Exam Questions [Q13-Q28]

Share

[Dec 08, 2021] Download Free Oracle 1Z0-1070-20 Real Exam Questions

Pass Your Exam With 100% Verified 1Z0-1070-20 Exam Questions


Oracle 1Z0-1070-20 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Understand how OCI implements Encryption and Key management
  • Configure Cloud to support hybrid security tooling
Topic 2
  • Describe typical use cases for OCI Vault (Keys and Secrets)
  • Configure Application Gateway
  • Monitor Security Risks
Topic 3
  • Describe typical use cases for Multi-Factor Authentication and Identity Federation
  • Configure Adaptive Security and MFA
Topic 4
  • Describe OCI Shared Security Responsibility Module
  • Design for Security and Compliance in OCI
Topic 5
  • Describe key capabilities provided by Oracle Data Safe
  • Use EBS Asserter, Identity Bridge and Integrations
Topic 6
  • Configure & troubleshoot OCI network resources to secure cloud deployment, this includes VCN, Routing Tables, Security Rules, Gateways, Virtual Firewall
Topic 7
  • Design Hybrid Cloud Architecture on OCI using FastConnect, IPSec VPN and Web Application Firewall (WAF)
  • Secure Identity Cloud Service
Topic 8
  • Describe features and benefits of Customer Isolation, Data Encryption, Security Control, Visibility, and Verifiably Secure Infrastructure
Topic 9
  • Identify the key capabilities provided by Identity Cloud Service, including the business value
  • Describe typical use cases for CASB Cloud Service
Topic 10
  • Identify the Cloud Security marketplace including trends, business drivers, and challenges
  • Configure Delegated Authentication
Topic 11
  • Describe service requirements and an understanding of the concepts
  • Create and use IAM Policies, Compartments, Policy Inheritance & IAM-Tags
Topic 12
  • Oracle Cloud Infrastructure Security Fundamentals
  • Cloud Security Business Drivers and Challenges
Topic 13
  • Execute basic configurations on CASB Cloud Service including users and groups, dashboards, reports and policies
Topic 14
  • Identify the key capabilities provided by CASB Cloud Service, including the business value
  • Describe typical use cases for Identity Cloud Service

 

NEW QUESTION 13
Which industry-standard benchmark engine needs to be configured with Oracle Configuration and Compliance Cloud Service?

  • A. Security Content Automation Protocol (SCAP)
  • B. General Data Protection Regulation (GDPR)
  • C. Secure Technical Implementation Guides (STIGs)
  • D. Open Vulnerability and Assessment Language (OVAL)

Answer: A

 

NEW QUESTION 14
How can you prevent a user from signing in to Oracle Identity Cloud Service if they are using a device that Oracle Identity Cloud Service does NOT recognize?

  • A. Configure the bridge
  • B. Configure identity provider policies
  • C. Configure Adaptive Security
  • D. Configure Multi-Factor Authentication

Answer: B

 

NEW QUESTION 15
You are the system administrator using the Management Cloud Dashboard to monitor your production environments. One of your global applications is yellow and upon further investigation on that application, it was identified that one of the users appears to be logging in to the application from multiple distant locations minutes apart. This appears to be a security threat.
Which remediation rule should be configured to address this type of incident?

  • A. Configure an Identity Cloud Service remediation rule to lock all the users accounts.
  • B. Configure an Identity Cloud Service remediation rule to lock user accounts that log into the application from different locations that occur within a minute of each attempt.
  • C. Disable all connectivity to the application from the suspicious region.
  • D. Configure a notification to the user to have them reset their password.

Answer: B

 

NEW QUESTION 16
Which two steps are needed to integrate Oracle CASB Cloud Service with Oracle Identity Cloud Service?
(Choose two.)

  • A. In Oracle CASB Cloud Service navigate to Configuration and then to Identity Management providers.
    Select Oracle Identity Cloud Service and specify the Instance name/Client ID/Client Secret and URL to the Provider.
  • B. Create an Oracle CASB Cloud Service application in Identity Cloud Service and collect the Client ID/Client Secret for the application created.
  • C. In Oracle CASB Cloud Service navigate to Configuration and then to Identity Management providers.
    Select Oracle Identity Cloud Service and specify the Client ID/Client Secret.
  • D. Create a trusted application in Identity Cloud Service and collect the Client ID/Client Secret for the application created.

Answer: A,D

 

NEW QUESTION 17
Which two steps are required to integrate Security Monitoring and Analytics Cloud Service with Identity Cloud Service? (Choose two.)

  • A. Create a Security Monitoring and Analytics Cloud Service Application in Identity Cloud Service and collect the grant type/Client ID/Client Secret/scope for the application created.
  • B. In Security Monitoring and Analytics Cloud Service under Security Admin Select Identity Context, click Create Identity Context Configuration and specify the grant type/Client ID/Client Secret/scope information collected from Identity Cloud Service.
  • C. Create a trusted application in Identity Cloud Service and collect the grant type/Client ID/Client Secret/scope for the application created.
  • D. In Security Monitoring and Analytics Cloud Service under Security Admin Select Identity Cloud Service, click Create Identity Context Configuration and specify the grant type/Client ID/Client Secret/scope information collected from Identity Cloud Service.

Answer: A,B

 

NEW QUESTION 18
You want to configure Oracle Identity Cloud Service so that any users who use an IP address that comes from a country where hacking is rampant are prevented from accessing Oracle Identity Cloud Service.
How would you accomplish this?

  • A. Define a network perimeter.
  • B. Define a network perimeter, assign it to a rule of a sign-on policy, and set the access for the rule to be denied.
  • C. Define a network perimeter, assign it to a rule of a sign-on policy, set the access for the rule to be denied, and define risk-related conditions in the rule associated with the user's location.
  • D. Define a network perimeter and assign it to a rule of a sign-on policy.

Answer: B

 

NEW QUESTION 19
You hire a third-party company to work in your Oracle Cloud environment. These partner employees work remotely and need to manage PaaS and IaaS instances in your environment. Your security officer requires that each partner employee provide a second verification factor on top of the traditional user name and password.
Which option do you configure in Oracle Identity Cloud Service for this to occur?

  • A. Identity provider policies
  • B. The bridge
  • C. Multi-Factor Authentication
  • D. Adaptive security

Answer: C

 

NEW QUESTION 20
Which option specifies the two major tasks involved in setting up most cloud applications to be monitored by Oracle CASB Cloud Service?

  • A. creating policy alerts for the application and creating a tenant admin for the application in Oracle CASB Cloud Service
  • B. creating a special account in the application and registering the application in Oracle CASB Cloud Service
  • C. defining reports for the application and importing users for the application into Oracle CASB Cloud Service
  • D. defining incidents to be monitored and risk events to be reported by Oracle CASB Cloud Service

Answer: B

 

NEW QUESTION 21
From the Oracle Management Cloud dashboard, you noticed a threat or suspicious browsing activity by a user to execute a brute force attack against an application.
Which two remedial actions will happen implicitly to mitigate some risk? (Choose two.)

  • A. Application policy gets created
  • B. Multi-factor Authentication (MFA) is imposed
  • C. User added to suspicious data access watchlist
  • D. Host AV update enforced

Answer: B,C

 

NEW QUESTION 22
Which three security services are provided in the Identity SOC framework? (Choose three.)

  • A. Oracle Application Performance Monitoring Cloud Service
  • B. Oracle CASB Cloud Service
  • C. Oracle Configuration and Compliance Cloud Service
  • D. Oracle Log Analytics Cloud Service
  • E. Oracle Orchestration Cloud Service

Answer: B,C,E

 

NEW QUESTION 23
Click the exhibit.

According to the diagram, which Oracle Identity Security Operations Center (SOC) component allows you to monitor Oracle Human Capital Management (HCM) users' activity and access management to avoid service misuse?

  • A. Oracle CASB Cloud Service
  • B. Oracle Management Cloud
  • C. Oracle Security Monitoring and Analytics Cloud Service
  • D. Oracle Database Security

Answer: C

 

NEW QUESTION 24
A customer use case requires the second Factor Email during Oracle Identity Cloud Service Authentication process for a group of users only. The security administrator, signed in Oracle Identity Cloud Service console, enabled the email factor, edited the default sign-on policy and added a new sign-on rule. The new sign-on rule included the group name in the member of these groups conditions and prompt for additional factor every time. The administrator saved both the rule and the policy.
After executing this configuration, why does the email factor NOT appear to users from that group?

  • A. The default Sign-on Policy can't be changed.
  • B. The Passcode Length and Validity Duration of the email factor don't have a default value.
  • C. The security administrator needs to specify the list of users instead of the group name.
  • D. The security administrator didn't change the order of the sign-on rules.

Answer: B

 

NEW QUESTION 25
Which is a major concern with regards to Line of Business (LOB) buyers when acquiring cloud services?

  • A. Line of Business (LOB) buyers were buying IT services without notifying their security team.
  • B. Customers are acquiring services that may not be in compliance with external regulations.
  • C. End users have no visibility over an organization's cloud strategy.
  • D. Line of Business (LOB) buyers do not have executive approval to acquire such services.

Answer: D

 

NEW QUESTION 26
Which three are the main goals of Oracle Identity Security Operations Center (SOC) Framework? (Choose three.)

  • A. a single pane of glass to manage security threats across their on-premises and cloud environments
  • B. the ability to integrate different services through open standards
  • C. a suite of integrated solutions that work together, and not have to manage multiple solutions
  • D. fast and easy deployment of on-premises services through a centralized console
  • E. the ability to monitor heterogeneous environments

Answer: A,C,D

 

NEW QUESTION 27
From the Oracle Management Cloud Security Monitoring and Analytics dashboard, you noticed a threat of key transfer and suspicious SMB communication activity by a user.
Which two remedial actions will be taken automatically to mitigate some risk? (Choose two.)

  • A. Targets added to file change watchlist
  • B. Host anti-virus (AV) update enforced
  • C. Multi-factor Authentication (MFA) is imposed
  • D. User added to suspicious data access watchlist

Answer: C,D

 

NEW QUESTION 28
......

1Z0-1070-20 Dumps 100 Pass Guarantee With Latest Demo: https://www.dumpsquestion.com/1Z0-1070-20-exam-dumps-collection.html