Complete list of current Q & A>> Download Prisma Certified Cloud Security Engineer (PCCSE) – Quiz 1 / 15 What are two alarm types that are registered after alarms are enabled? (Choose two.) A. Onboarded Cloud Accounts status B. Resource status C. Compute resources D. External integrations status 2 / 15 An administrator for Prisma Cloud needs to obtain a graphical view to monitor all connections, including connections across hosts and connections to any configured network objects. Which setting does the administrator enable or configure to accomplish this task? A. ADEM B. WAAS Analytics C. Telemetry D. Cloud Native Network Firewall E. Host Insight 3 / 15 A customer has a large environment that needs to upgrade Console without upgrading all Defenders at one time. What are two prerequisites prior to performing a rolling upgrade of Defenders? (Choose two.) A. manual installation of the latest twistcli tool prior to the rolling upgrade B. all Defenders set in read-only mode before execution of the rolling upgrade C. a second location where you can install the Console D. additional workload licenses are required to perform the rolling upgrade E. an existing Console at version n-1 4 / 15 A security team is deploying Cloud Native Application Firewall (CNAF) on a containerized web application. The application is running an NGINX container. The container is listening on port 8080 and is mapped to host port 80. Which port should the team specify in the CNAF rule to protect the application? A. 443 B. 80 C. 8080 D. 8888 5 / 15 The compliance team needs to associate Prisma Cloud policies with compliance frameworks. Which option should the team select to perform this task? A. Custom Compliance B. Policies C. Compliance D. Alert Rules 6 / 15 The security team wants to target a CNAF policy for specific running Containers. How should the administrator scope the policy to target the Containers? A. scope the policy to Image names. B. scope the policy to namespaces. C. scope the policy to Defender names. D. scope the policy to Host names. 7 / 15 A security team has a requirement to ensure the environment is scanned for vulnerabilities. What are three options for configuring vulnerability policies? (Choose three.) A. individual actions based on package type B. output verbosity for blocked requests C. apply policy only when vendor fix is available D. individual grace periods for each severity level 8 / 15 Which type of compliance check is available for rules under Defend > Compliance > Containers and Images > CI? A. Host B. Container C. Functions D. Image 9 / 15 A customer finds that an open alert from the previous day has been resolved. No auto-remediation was configured. Which two reasons explain this change in alert status? (Choose two.) A. user manually changed the alert status. B. policy was changed. C. resource was deleted. D. alert was sent to an external integration. 10 / 15 Which two statements are true about the differences between build and run config policies? (Choose two.) A. Run and Network policies belong to the configuration policy set. B. Build and Audit Events policies belong to the configuration policy set. C. Run policies monitor resources, and check for potential issues after these cloud resources are deployed. D. Build policies enable you to check for security misconfigurations in the IaC templates and ensure that these issues do not get into production. E. Run policies monitor network activities in your environment, and check for potential issues during runtime. 11 / 15 A customer has a requirement to terminate any Container from image topSecret:latest when a process named ransomWare is executed. How should the administrator configure Prisma Cloud Compute to satisfy this requirement? A. set the Container model to manual relearn and set the default runtime rule to block for process protection. B. set the Container model to relearn and set the default runtime rule to prevent for process protection. C. add a new runtime policy targeted at a specific Container name, add ransomWare process into the denied process list, and set the action to œprevent . D. choose œcopy into rule for the Container, add a ransomWare process into the denied process list, and set the action to œblock . 12 / 15 The development team wants to fail CI jobs where a specific CVE is contained within the image. How should the development team configure the pipeline or policy to produce this outcome? A. Set the specific CVE exception as an option in Jenkins or twistcli. B. Set the specific CVE exception as an option in Defender running the scan. C. Set the specific CVE exception as an option using the magic string in the Console. D. Set the specific CVE exception in Consoles CI policy. 13 / 15 Given a default deployment of Console, a customer needs to identify the alerted compliance checks that are set by default. Where should the customer navigate in Console? A. Monitor > Compliance B. Defend > Compliance C. Manage > Compliance D. Custom > Compliance 14 / 15 Which type of query is used for scanning Infrastructure as Code (laC) templates? A. API B. XML C. JSON D. RQL 15 / 15 Which alerts are fixed by enablement of automated remediation? A. All applicable open alerts regardless of when they were generated, with alert status updated to "resolved" B. Only the open alerts that were generated before the enablement of remediation, with alert status updated to "resolved" C. All applicable open alerts regardless of when they were generated, with alert status updated to "dismissed" D. Only the open alerts that were generated after the enablement of remediation, with alert status updated to "resolved" Your score is 0% Restart quiz Send feedback