Pass4itsure > Palo Alto Networks > Palo Alto Networks Certifications > PCDRA > PCDRA Online Practice Questions and Answers

PCDRA Online Practice Questions and Answers

Questions 4

What license would be required for ingesting external logs from various vendors?

A. Cortex XDR Pro per Endpoint

B. Cortex XDR Vendor Agnostic Pro

C. Cortex XDR Pro per TB

D. Cortex XDR Cloud per Host

Buy Now
Questions 5

When creating a scheduled report which is not an option?

A. Run weekly on a certain day and time.

B. Run quarterly on a certain day and time.

C. Run monthly on a certain day and time.

D. Run daily at a certain time (selectable hours and minutes).

Buy Now
Questions 6

Which of the following is NOT a precanned script provided by Palo Alto Networks?

A. delete_file

B. quarantine_file

C. process_kill_name

D. list_directories

Buy Now
Questions 7

Which of the following protection modules is checked first in the Cortex XDR Windows agent malware protection flow?

A. Hash Verdict Determination

B. Behavioral Threat Protection

C. Restriction Policy

D. Child Process Protection

Buy Now
Questions 8

Which module provides the best visibility to view vulnerabilities?

A. Live Terminal module

B. Device Control Violations module

C. Host Insights module

D. Forensics module

Buy Now
Questions 9

To create a BIOC rule with XQL query you must at a minimum filter on which field in order for it to be a valid BIOC rule?

A. causality_chain

B. endpoint_name

C. threat_event

D. event_type

Buy Now
Questions 10

Which of the following policy exceptions applies to the following description?

`An exception allowing specific PHP files'

A. Support exception

B. Local file threat examination exception

C. Behavioral threat protection rule exception

D. Process exception

Buy Now
Questions 11

Which statement regarding scripts in Cortex XDR is true?

A. Any version of Python script can be run.

B. The level of risk is assigned to the script upon import.

C. Any script can be imported including Visual Basic (VB) scripts.

D. The script is run on the machine uploading the script to ensure that it is operational.

Buy Now
Questions 12

Which statement best describes how Behavioral Threat Protection (BTP) works?

A. BTP injects into known vulnerable processes to detect malicious activity.

B. BTP runs on the Cortex XDR and distributes behavioral signatures to all agents.

C. BTP matches EDR data with rules provided by Cortex XDR.

D. BTP uses machine Learning to recognize malicious activity even if it is not known.

Buy Now
Questions 13

Which of the following represents a common sequence of cyber-attack tactics?

A. Actions on the objective » Reconnaissance »Weaponizationand Delivery » Exploitation » Installation » Command and Control

B. Installation >> Reconnaissance »Weaponizationand Delivery » Exploitation » Command and Control » Actions on the objective

C. Reconnaissance »Weaponizationand Delivery » Exploitation » Installation » Command and Control » Actions on the objective

D. Reconnaissance >> Installation »Weaponizationand Delivery » Exploitation » Command and Control » Actions on the objective

Buy Now
Exam Code: PCDRA
Exam Name: Palo Alto Networks Certified Detection and Remediation Analyst (PCDRA)
Last Update: Jan 01, 2025
Questions: 91
10%OFF Coupon Code: SAVE10

PDF (Q&A)

$49.99

VCE

$55.99

PDF + VCE

$65.99