Special Summer Sale - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 65percent

Welcome To DumpsPedia

PSE-PrismaCloud Sample Questions Answers

Questions 4

Which cloud provider supports iLB-as-next-hop?

Options:

A.

Microsoft Azure

B.

Alibaba Cloud

C.

Oracle Cloud

D.

Amazon Web Services

Buy Now
Questions 5

Which RQL string monitors all traffic from the Internet and Suspicious IPs destined for your Amazon Web Services databases''

Options:

A.

network where source.publicnetwork IN ('Suspicious IPs') and dest.resource IN (resource where role IN ('AWS RDS', 'Database'))

B.

network where source.publicnetwork IN ('Suspicious IPs', 'Internet IPs') and dest.resource IN (resource where role IN ('LDAP'))

C.

network where dest.resource IN (resource where role = 'Database'}

D.

network where source.publicnetwork IN ('Suspicious IPs', 'Internet IPs') and dest resource IN (resource where role IN ('AWS RDS'. 'Database'))

Buy Now
Questions 6

The Microsoft Azure virtual network gateway supports which two site-to-site connectivity options? (Choose two.)

Options:

A.

Direct Connect

B.

Fast Connect

C.

IPsecVPN

D.

ExpressRoute

Questions 7

Which statement reflects the default vulnerability management policy?

Options:

A.

Policy rule order has little impact on optimization.

B.

Prisma Cloud scans images in all containers immediately upon policy activation.

C.

The default vulnerability policy rule has an alert threshold to critical.

D.

Prisma Cloud ships all vulnerability policy with a default alert for containers, hosts, and serverless functions.

Buy Now
Questions 8

An Azure VNet has the IP network 10.0.0.0/16 with two subnets, 10.0.1.0/24 (used for web servers) and 10.0.2.0/24 (used for database servers). Which is a valid IP address to manage the VM-Series NGFW?

Options:

A.

10.0.1.254

B.

10.0.2.1

C.

10.0.3.255

D.

10.0.3.1

Buy Now
Questions 9

Which framework in Prisma Public Cloud can be used to provide general best practices when no specific legal requirements or regulatory standards need to be met?

Options:

A.

HIPAA

B.

CIS Benchmark

C.

Payment Card Industry DSS V3

D.

GDPR

Buy Now
Questions 10

Which Google Cloud Platform project shares its VPC networks with other projects?

Options:

A.

Service project

B.

Host project

C.

Admin project

D.

Subscribing project

Buy Now
Questions 11

A Prisma Cloud Administrator has been asked to create a custom policy which notifies the InfoSec team each time a configuration mange is made to a Security group.

Which type of Resource Query Language (RQL) query would be used in this policy?

Options:

A.

audit from

B.

network from

C.

event from

D.

config from

Buy Now
Questions 12

Where can rules be configured and viewed to configure trusted images?

Options:

A.

Monitor > Compliance > Trusted Images

B.

Monitor > Compliance > Images

C.

Defend > Compliance > Trusted Images

D.

Defend > Compliance > Images

Buy Now
Questions 13

Which statement applies to vulnerability management policies?

Options:

A.

Host and serverless rules support blocking, whereas container rules do not.

B.

Rules explain the necessary actions when vulnerabilities are found in the resources of a customer environment.

C.

Policies for containers, hosts, and serverless functions are not separate.

D.

Rules are evaluated in an undefined order.

Buy Now
Questions 14

Based on the diagram, prioritize the order in which the Virtual Gateway evaluates the best route based on the deterministic B6P Path selection process.

Options:

Buy Now
Questions 15

How does Prisma Cloud Enterprise autoremediate unwanted violations to public cloud infrastructure?

Options:

A.

It inspects the application program interface (API) call made to public cloud and blocks the change if a policy violation is found.

B.

It makes changes after a policy violation has been identified in monitoring.

C.

It locks all changes to public cloud infrastructure and stops any configuration changes without prior approval.

D.

It uses machine learning (ML) to identify unusual changes to infrastructure.

Buy Now
Questions 16

What are two valid image identifiers to designate trust? (Choose two.)

Options:

A.

repo

B.

trusted publisher

C.

registry

D.

base layer

Buy Now
Questions 17

Which two types of Resource Query Language (RQL) queries can be used to create policies? (Choose two.)

Options:

A.

hose from

B.

network from

C.

system from

D.

event from

Buy Now
Questions 18

An image containing medium vulnerabilities that do not have available fixes is being deployed into the sock-shop namespace. Prisma Cloud has been configured for vulnerability management within the organization's continuous integration (CI) tool and registry.

What will occur during the attempt to deploy this image from the CI tool into the sock-shop namespace?

Options:

A.

The image will pass the CI policy, but will be blocked by the deployed policy; therefore, it will not be deployed.

B.

The CI policy will fail the build; therefore, the image will not be deployed.

C.

The image will be deployed successfully, and all vulnerabilities will be reported.

D.

The image will be deployed successfully, but no vulnerabilities will be reported.

Buy Now
Questions 19

Which Amazon Web Services security service can provide host vulnerability information to Prisma Public Cloud?

Options:

A.

Shield

B.

Inspector

C.

GuardDuty

D.

Amazon Web Services WAF

Buy Now
Questions 20

How can you modify a range of dates default policy in Prisma Public Cloud?

Options:

A.

Override the value and commit the configuration.

B.

Clone the existing policy and change the value.

C.

Manually create the RQL statement.

D.

Click the Gear icon next to the policy name to open the Edit Policy dialog

Buy Now
Questions 21

What are three examples of outbound traffic flow? (Choose three.)

Options:

A.

issue yum update command on an instance inside Amazon Web Services

B.

Microsoft Windows inside Azure requesting a security patch

C.

web server inside Amazon Web Services receiving web requests from internet

D.

issue apt-get install command on an instance inside Amazon Web Services

E.

outgoing Prisma Public Cloud API calls

Buy Now
Questions 22

What is the Palo Alto Networks recommended setting for the Prisma Cloud Training Model Threshold?

Options:

A.

Low

B.

Thorough

C.

High

D.

Baseline

Buy Now
Questions 23

Under which operating systems (OSs) is twistcli supported?

Options:

A.

Linux, macOS, and Windows

B.

Windows only

C.

Linux and Windows

D.

Linux, macOS, PAN-OS, and Windows

Buy Now
Questions 24

Which three anomaly policies are predefined in Prisma Public Cloud? (Choose three.)

Options:

A.

Excessive login failures

B.

Unusual user activity

C.

Denial-of-service activity

D.

Account hijacking attempts

E.

Suspicious file activity

Buy Now
Questions 25

Which RQL query should be used to quickly identify any events related to an organization's Google Cloud Platform Big Query database the last 24 hours?

Options:

A.

event from cloud.audit_logs where cloud.type = 'gcp' AND cloud.service = 'Google Bigtable Instance'

B.

event from cloud.audit_logs where cloud.type = 'gcp' AND cloud.service = 'cloudsql.googleapis.com'

C.

event from cloud.audit_logs where cloud.type = 'gcp' AND cloud.service = 'bigquery.googleapis.com'

D.

event from cloud.audit_logs where cloud.type = 'gcp' AND cloud.service = 'dataproc.googleapis.com'

Buy Now
Questions 26

Which regulatory framework in Prisma Public Cloud measures compliance with EU data privacy regulations in Amazon Web Services workloads?

Options:

A.

GDPR

B.

EU Data Protection Directive 95/46/EC

C.

ISO 27001

D.

Payment Card Industry 3.0

Buy Now
Questions 27

A customer has just launched a Palo Alto Networks VM-Series NGFW into an Amazon Web Services VPC to protect a cloud hosted application. They are experiencing unpredictable results and have identified that the interfaces on the firewall are in the incorrect order

Which PAN-OS CLI command resolves this issue?

Options:

A.

set system setting mgmt-interface-swap enable yes

B.

set mgmt-interface settings swap yes

C.

set mgmt-interface swap yes

D.

set system setting mgmt-interface swap yes

Buy Now
Questions 28

Prisma Public Cloud enables compliance monitoring and reporting by mapping which configurations to compliance standards?

Options:

A.

RQL queries

B.

alert rules

C.

notification templates

D.

policies

Buy Now
Questions 29

Which two data sources are ingested by Prisma Cloud? (Choose two.)

Options:

A.

network flow logs

B.

list of all database instances' tables

C.

metadata about compute resources' configuration

D.

Cortex Data Lake

Buy Now
Questions 30

Which Resource Query Language (RQL) query returns a list of all Azure SQL Databases that have transparent data encryption turned in?

Options:

A.

config from cloud.resource where api.name = 'gcloud-compute-instances-list' and json.rule = is TERMINATED

B.

config from cloud.resource where api.name = 'gcloud-compute-instances-list' = TERMINATED

C.

config from cloud.resource where api.name = 'gcloud-compute-instances-list* and json.rule == status TERMINATED

D.

config from cloud.resource where api.name = 'gcloud-compute-instances-list' and json.rule = status contains TERMINATED

Buy Now
Questions 31

What are the asset severity levels within Prisma Cloud asset inventory?

Options:

A.

Low, Medium, and High

B.

Low, Medium, High, and Critical

C.

Informational, Low, Medium, and High

D.

Low, Medium, High, Severe, and Critical

Buy Now
Questions 32

Match the logging service with its cloud provider.

Options:

Buy Now
Questions 33

What configuration on AWS is required in order for VM-Series to forward traffic between its network interfaces?

Options:

A.

Both Source and Destination Checks are disabled

B.

Both Source and Destination Checks are enabled

C.

Source Check is disabled and Destination Check is enabled

D.

Source Check is enabled and Destination Check is disabled

Questions 34

Which statement is specific for Prisma Cloud when integrating into cloud environments?

Options:

A.

An AutoFocus license is included in Prisma Cloud.

B.

For multi-cloud environment licenses are required for the number of Prisma Cloud instances.

C.

Can be natively integrated into Prisma Access.

D.

No agents or proxies are required.

Buy Now
Exam Code: PSE-PrismaCloud
Exam Name: PSE Palo Alto Networks System Engineer Professional - Prisma Cloud
Last Update: Mar 28, 2025
Questions: 115
$57.75  $164.99
$43.75  $124.99
$36.75  $104.99
buy now PSE-PrismaCloud