[Q67-Q91] Full PCCET Practice Test and 145 Unique Questions, Get it Now!

Share

Full PCCET Practice Test and 145 Unique Questions, Get it Now!

The Best PCCET Exam Study Material Premium Files  and Preparation Tool

NEW QUESTION # 67
What is a key method used to secure sensitive data in Software-as-a-Service (SaaS) applications?

  • A. Allow users to choose their own applications to access data.
  • B. Leave data security in the hands of the cloud service provider.
  • C. Allow downloads to both managed and unmanaged devices.
  • D. Allow downloads to managed devices but block them from unmanaged devices.

Answer: B


NEW QUESTION # 68
Which Palo Alto Networks tools enable a proactive, prevention-based approach to network automation that accelerates security analysis?

  • A. AutoFocus
  • B. WildFire
  • C. Cortex XDR
  • D. MineMeld

Answer: C


NEW QUESTION # 69
Which characteristic of serverless computing enables developers to quickly deploy application code?

  • A. Uploading the application code itself, without having to provision a full container image or any OS virtual machine components
  • B. Using cloud service spot pricing to reduce the cost of using virtual machines to run their application code
  • C. Uploading cloud service autoscaling services to deploy more virtual machines to run their application code based on user demand
  • D. Using Container as a Service (CaaS) to deploy application containers to run their code.

Answer: A

Explanation:
Explanation
"In serverless apps, the developer uploads only the app package itself, without a full container image or any OS components. The platform dynamically packages it into an image, runs the image in a container, and (if needed) instantiates the underlying host OS and VM and the hardware required to run them."


NEW QUESTION # 70
What is the key to "taking down" a botnet?

  • A. install openvas software on endpoints
  • B. prevent bots from communicating with the C2
  • C. use LDAP as a directory service
  • D. block Docker engine software on endpoints

Answer: B


NEW QUESTION # 71
Match each description to a Security Operating Platform key capability.

Answer:

Explanation:

Explanation

Reduce the attack surface: Best-of-breed technologies that are natively integrated provide a prevention architecture that inherently reduces the attack surface. This type of architecture allows organizations to exert positive control based on applications, users, and content, with support for open communication, orchestration, and visibility.
Prevent all known threats, fast: A coordinated security platform accounts for the full scope of an attack across the various security controls that compose the security posture, thus enabling organizations to quickly identify and block known threats.
Detect and prevent new, unknown threats with automation: Security that simply detects threats and requires a manual response is too little, too late. Automated creation and delivery of near-real-time protections against new threats to the various security solutions in the organization's environments enable dynamic policy updates. These updates are designed to allow enterprises to scale defenses with technology, rather than people.


NEW QUESTION # 72
Which feature of the VM-Series firewalls allows them to fully integrate into the DevOps workflows and CI/CD pipelines without slowing the pace of business?

  • A. Elastic scalability
  • B. External dynamic lists
  • C. Log export
  • D. 5G

Answer: A


NEW QUESTION # 73
Data Loss Prevention (DLP) and Cloud Access Security Broker (CASB) fall under which Prisma access service layer?

  • A. Cloud
  • B. Management
  • C. Security
  • D. Network

Answer: C

Explanation:
A SASE solution converges networking and security services into one unified, cloud-delivered solution (see Figure 3-12) that includes the following:
* Networking
* Software-defined wide-area networks (SD-WANs)
* Virtual private networks (VPNs)
* Zero Trust network access (ZTNA)
* Quality of Service (QoS)
* Security
* Firewall as a service (FWaaS)
* Domain Name System (DNS) security
* Threat prevention
* Secure web gateway (SWG)
* Data loss prevention (DLP)
* Cloud access security broker (CASB)


NEW QUESTION # 74
Which two network resources does a directory service database contain? (Choose two.)

  • A. Terminal shell types on endpoints
  • B. Services
  • C. /etc/shadow files
  • D. Users

Answer: B,D

Explanation:
A directory service is a database that contains information about users, resources, and services in a network.


NEW QUESTION # 75
The customer is responsible only for which type of security when using a SaaS application?

  • A. data
  • B. infrastructure
  • C. physical
  • D. platform

Answer: A


NEW QUESTION # 76
Which Palo Alto Networks product provides playbooks with 300+ multivendor integrations that help solve any security use case?

  • A. AutoFocus
  • B. Cortex XSOAR
  • C. Prisma Cloud
  • D. Cortex XDR

Answer: B


NEW QUESTION # 77
In addition to local analysis, what can send unknown files to WildFire for discovery and deeper analysis to rapidly detect potentially unknown malware?

  • A. AutoFocus
  • B. Cortex XDR
  • C. Cortex XSOAR
  • D. MineMild

Answer: B

Explanation:
Explanation
In addition to local analysis, Cortex XDR can send unknown files to WildFire for discovery and deeper analysis to rapidly detect.


NEW QUESTION # 78
Why is it important to protect East-West traffic within a private cloud?

  • A. East-West traffic contains more threats than other traffic
  • B. All traffic contains threats, so enterprises must protect against threats across the entire network
  • C. East-West traffic uses IPv6 which is less secure than IPv4
  • D. East-West traffic contains more session-oriented traffic than other traffic

Answer: B


NEW QUESTION # 79
Which tool supercharges security operations center (SOC) efficiency with the world's most comprehensive operating platform for enterprise security?

  • A. Cortex XSOAR
  • B. WildFire
  • C. Prisma SAAS
  • D. Cortex XDR

Answer: A

Explanation:
Cortex XSOAR enhances Security Operations Center (SOC) efficiency with the world's most comprehensive operating platform for enterprise security. Cortex XSOAR unifies case management, automation, real-time collaboration, and native threat intel management in the industry's first extended security orchestration, automation, and response (SOAR) offering.


NEW QUESTION # 80
Which statement describes DevOps?

  • A. DevOps is a culture that unites the Development and Operations teams throughout the software delivery process
  • B. DevOps is a combination of the Development and Operations teams
  • C. DevOps is a set of tools that assists the Development and Operations teams throughout the software delivery process
  • D. DevOps is its own separate team

Answer: A

Explanation:
DevOps is not:
* A combination of the Dev and Ops teams: There still are two teams; they just operate in a communicative, collaborative way.
* Its own separate team: There is no such thing as a "DevOps engineer." Although some companies may appoint a "DevOps team" as a pilot when trying to transition to a DevOps culture, DevOps refers to a culture where developers, testers, and operations personnel cooperate throughout the entire software delivery lifecycle.
* A tool or set of tools: Although there are tools that work well with a DevOps model or help promote DevOps culture, DevOps ultimately is a strategy, not a tool.
* Automation: Although automation is very important for a DevOps culture, it alone does not define DevOps.


NEW QUESTION # 81
Which TCP/IP sub-protocol operates at the Layer7 of the OSI model?

  • A. MAC
  • B. UDP
  • C. SNMP
  • D. NFS

Answer: C

Explanation:
* Application (Layer 7 or L7): This layer identifies and establishes availability of communication partners, determines resource availability, and synchronizes communication.
* Presentation (Layer 6 or L6): This layer provides coding and conversion functions (such as data representation, character conversion, data compression, and data encryption) to ensure that data sent from the Application layer of one system is compatible with the Application layer of the receiving system.
* Session (Layer 5 or L5): This layer manages communication sessions (service requests and service responses) between networked systems, including connection establishment, data transfer, and connection release.
* Transport (Layer 4 or L4): This layer provides transparent, reliable data transport and end-to-end transmission control.


NEW QUESTION # 82
Which characteristic of serverless computing enables developers to quickly deploy application code?

  • A. Uploading cloud service autoscaling services to deploy more virtual machines to run their application code based on user demand
  • B. Uploading the application code itself, without having to provision a full container image or any OS virtual machine components
  • C. Using cloud service spot pricing to reduce the cost of using virtual machines to run their application code
  • D. Using Container as a Service (CaaS) to deploy application containers to run their code.

Answer: A


NEW QUESTION # 83
Which three services are part of Prisma SaaS? (Choose three.)

  • A. Data Exposure Control
  • B. Threat Prevention
  • C. Data Loss Prevention
  • D. DevOps
  • E. Denial of Service

Answer: A,B,C


NEW QUESTION # 84
Which security component can detect command-and-control traffic sent from multiple endpoints within a corporate data center?

  • A. Stateless firewall
  • B. Port-based firewall
  • C. Personal endpoint firewall
  • D. Next-generation firewall

Answer: D


NEW QUESTION # 85
Which IoT connectivity technology is provided by satellites?

  • A. L-band
  • B. VLF
  • C. 4G/LTE
  • D. 2G/2.5G

Answer: A


NEW QUESTION # 86
Which pillar of Prisma Cloud application security does vulnerability management fall under?

  • A. network protection
  • B. compute security
  • C. dynamic computing
  • D. identity security

Answer: B

Explanation:
Explanation
Prisma Cloud comprises four pillars:
Visibility, governance, and compliance. Gain deep visibility into the security posture of multicloud environments. Track everything that gets deployed with an automated asset inventory, and maintain compliance with out-of-the-box governance policies that enforce good behavior across your environments.
Compute security. Secure hosts, containers, and serverless workloads throughout the application lifecycle. Detect and prevent risks by integrating vulnerability intelligence into your integrated development environment (IDE), software configuration management (SCM), and CI/CD workflows. Enforce machine learning-based runtime protection to protect applications and workloads in real time.
Network protection. Continuously monitor network activity for anomalous behavior, enforce microservice-aware micro-segmentation, and implement industry-leading firewall protection. Protect the network perimeter and the connectivity between containers and hosts.
Identity security. Monitor and leverage user and entity behavior analytics (UEBA) across your environments to detect and block malicious actions. Gain visibility into and enforce governance p


NEW QUESTION # 87
Order the OSI model with Layer7 at the top and Layer1 at the bottom.

Answer:

Explanation:


NEW QUESTION # 88
Which model would a customer choose if they want full control over the operating system(s) running on their cloud computing platform?

  • A. DaaS
  • B. SaaS
  • C. IaaS
  • D. PaaS

Answer: C


NEW QUESTION # 89
In the network diagram below, which device is the router?

  • A. D
  • B. B
  • C. C
  • D. A

Answer: D


NEW QUESTION # 90
Which subnet does the host 192.168.19.36/27 belong?

  • A. 192.168.19.64
  • B. 192.168.19.32
  • C. 192.168.19.16
  • D. 192.168.19.0

Answer: B


NEW QUESTION # 91
......

Get Instant Access to PCCET Practice Exam Questions: https://www.dumpsquestion.com/PCCET-exam-dumps-collection.html

Reliable Study Materials & Testing Engine for PCCET Exam Success!: https://drive.google.com/open?id=1rHjl4fIb_mPuZwirpFYmIH7baHvXqTm9