Test Online Free Palo Alto Networks PCCSE Exam Questions and Answers
Practice a live sample before buying full access. This page keeps the free PCCSE question set organized by page so visitors and search engines can reach the canonical -questions.html URL directly.
A customer is interested in PCI requirements and needs to ensure that no privilege containers can start in the environment.
Which action needs to be set for “do not use privileged containers”?
Answer: Explanation:
Block―Defender stops the entire container if a process that violates your policy attempts to run.
https://docs.prismacloudcompute.com/docs/enterprise_edition/runtime_defense/runtime_defense_containers.html#_effect
Question 2Selectable Answer
The security team wants to enable the “block” option under compliance checks on the host.
What effect will this option have if it violates the compliance check?
Which port should a security team use to pull data from Console’s API?
Answer:
Question 5Selectable Answer
A customer has a requirement to terminate any Container from image topSecret:latest when a process named ransomWare is executed.
How should the administrator configure Prisma Cloud Compute to satisfy this requirement?
Answer:
Question 6Selectable Answer
Given this information:
The Console is located at https://prisma-console.mydomain.local The username is: cluster
The password is: password123
The image to scan is: myimage:latest
Which twistcli command should be used to scan a Container for vulnerabilities and display the details about each vulnerability?
Answer:
Question 7Selectable Answer
Which two filters are available in the SecOps dashboard? (Choose two.)
Answer:
Question 8Selectable Answer
A customer is deploying Defenders to a Fargate environment. It wants to understand the vulnerabilities in the image it is deploying.
How should the customer automate vulnerability scanning for images deployed to Fargate?
Which field is required during the creation of a custom config query?
Answer:
Question 10Selectable Answer
An administrator has been tasked with a requirement by your DevSecOps team to write a script to continuously query programmatically the existing users, and the user’s associated permission levels, in a Prisma Cloud Enterprise tenant.
Which public documentation location should be reviewed to help determine the required attributes to carry out this step?
A DevOps lead reviewed some system logs and notices some odd behavior that could be a data exfiltration attempt. The DevOps lead only has access to vulnerability data in Prisma Cloud Compute, so the DevOps lead passes this information to SecOps.
Which pages in Prisma Cloud Compute can the SecOps lead use to investigate the runtime aspects of this attack?
A customer wants to scan a serverless function as part of a build process.
Which twistcli command can be used to scan serverless functions?
Answer: Explanation:
The twistcli command is a CLI tool used to scan serverless functions as part of a build process. The command takes a serverless function as an argument, which should be provided in the form of a ZIP archive. By running the command, the serverless function will be scanned for any potential vulnerabilities.
Question 13Selectable Answer
Which two statements apply to the Defender type Container Defender - Linux?
Answer:
Question 14Selectable Answer
Which two options may be used to upgrade the Defenders with a Console v20.04 and Kubernetes deployment? (Choose two.)