
[Oct 27, 2021] PCCET Exam Dumps PDF Guaranteed Success with Accurate & Updated Questions
Pass PCCET Exam - Real Test Engine PDF with 77 Questions
NEW QUESTION 18
An Administrator wants to maximize the use of a network address. The network is 192.168.6.0/24 and there are three subnets that need to be created that can not overlap. Which subnet would you use for the network with 120 hosts?
Requirements for the three subnets: Subnet 1: 3 host addresses
Subnet 2: 25 host addresses
Subnet 3: 120 host addresses
- A. 192.168.6.160/29
- B. 192.168.6.128/27
- C. 192.168.6.0/25
- D. 192.168.6.168/30
Answer: C
NEW QUESTION 19
Which Palo Alto Networks tool is used to prevent endpoint systems from running malware executables such as viruses, trojans, and rootkits?
- A. Cortex XDR
- B. AutoFocus
- C. App-ID
- D. Expedition
Answer: A
NEW QUESTION 20
In which two cloud computing service models are the vendors responsible for vulnerability and patch management of the underlying operating system? (Choose two.)
- A. IaaS
- B. SaaS
- C. On-premises
- D. PaaS
Answer: B,D
NEW QUESTION 21
Which item accurately describes a security weakness that is caused by implementing a "ports first" data security solution in a traditional data center?
- A. You may have to use port numbers greater than 1024 for your business-critical applications.
- B. You may not be able to open up enough ports for your business-critical applications which will increase the attack surface area.
- C. You may have to open up multiple ports and these ports could also be used to gain unauthorized entry into your datacenter.
- D. You may not be able to assign the correct port to your business-critical applications.
Answer: C
NEW QUESTION 22
How does adopting a serverless model impact application development?
- A. slows down the deployment of application code, but it improves the quality of code development
- B. costs more to develop application code because it uses more compute resources
- C. reduces the operational overhead necessary to deploy application code
- D. prevents developers from focusing on just the application code because you need to provision the underlying infrastructure to run the code
Answer: C
NEW QUESTION 23
Which statement describes DevOps?
- A. DevOps is a culture that unites the Development and Operations teams throughout the software delivery process
- B. DevOps is its own separate team
- C. DevOps is a set of tools that assists the Development and Operations teams throughout the software delivery process
- D. DevOps is a combination of the Development and Operations teams
Answer: C
NEW QUESTION 24
Which type of Software as a Service (SaaS) application provides business benefits, is fast to deploy, requires minimal cost and is infinitely scalable?
- A. Benign
- B. Secure
- C. Sanctioned
- D. Tolerated
Answer: C
Explanation:
Explanation/Reference:
NEW QUESTION 25
Why have software developers widely embraced the use of containers?
- A. Containers simplify the building and deploying of cloud native applications.
- B. Containers share application dependencies with other containers and with their host computer.
- C. Containers require separate development and production environments to promote authentic code.
- D. Containers are host specific and are not portable across different virtual machine hosts.
Answer: A
NEW QUESTION 26
During the OSI layer 3 step of the encapsulation process, what is the Protocol Data Unit (PDU) called when the IP stack adds source (sender) and destination (receiver) IP addresses?
- A. Data
- B. Packet
- C. Frame
- D. Segment
Answer: B
NEW QUESTION 27
When signature-based antivirus software detects malware, what three things does it do to provide protection?
(Choose three.)
- A. quarantine the infected file
- B. delete the infected file
- C. alert system administrators
- D. decrypt the infected file using base64
- E. remove the infected file's extension
Answer: A,B,E
NEW QUESTION 28
Which type of LAN technology is being displayed in the diagram?

- A. Spine Leaf Topology
- B. Bus Topology
- C. Star Topology
- D. Mesh Topology
Answer: D
NEW QUESTION 29
Which subnet does the host 192.168.19.36/27 belong?
- A. 192.168.19.32
- B. 192.168.19.0
- C. 192.168.19.64
- D. 192.168.19.16
Answer: A
NEW QUESTION 30
Routing Information Protocol (RIP), uses what metric to determine how network traffic should flow?
- A. Split Horizon
- B. Hop Count
- C. Shortest Path
- D. Path Vector
Answer: B
NEW QUESTION 31
Match the Identity and Access Management (IAM) security control with the appropriate definition.

Answer:
Explanation:


NEW QUESTION 32
When signature-based antivirus software detects malware, what three things does it do to provide protection?
(Choose three.)
- A. quarantine the infected file
- B. delete the infected file
- C. alert system administrators
- D. decrypt the infected file using base64
- E. remove the infected file's extension
Answer: A,B,E
Explanation:
Explanation
NEW QUESTION 33
Match each description to a Security Operating Platform key capability.

Answer:
Explanation:


NEW QUESTION 34
How does DevSecOps improve the Continuous Integration/Continuous Deployment (CI/CD) pipeline?
- A. DevSecOps ensures the pipeline has horizontal intersections for application code deployment
- B. DevSecOps unites the Security team with the Development and Operations teams to integrate security into the CI/CD pipeline
- C. DevSecOps does security checking after the application code has been processed through the CI/CD pipeline
- D. DevSecOps improves pipeline security by assigning the security team as the lead team for continuous deployment
Answer: B
NEW QUESTION 35
What are two key characteristics of a Type 1 hypervisor? (Choose two.)
- A. runs within an operating system
- B. runs without any vulnerability issues
- C. allows multiple, virtual (or guest) operating systems to run concurrently on a single physical host computer
- D. is hardened against cyber attacks
Answer: A,C
NEW QUESTION 36
Which Palo Alto Networks product provides playbooks with 300+ multivendor integrations that help solve any security use case?
- A. Cortex XDR
- B. Cortex XSOAR
- C. Prisma Cloud
- D. AutoFocus
Answer: B
NEW QUESTION 37
Which endpoint tool or agent can enact behavior-based protection?
- A. Cortex XDR
- B. MineMeld
- C. DNS Security
- D. AutoFocus
Answer: A
Explanation:
Explanation
NEW QUESTION 38
Which characteristic of serverless computing enables developers to quickly deploy application code?
- A. Uploading the application code itself, without having to provision a full container image or any OS virtual machine components
- B. Using Container as a Service (CaaS) to deploy application containers to run their code.
- C. Uploading cloud service autoscaling services to deploy more virtual machines to run their application code based on user demand
- D. Using cloud service spot pricing to reduce the cost of using virtual machines to run their application code
Answer: C
NEW QUESTION 39
......
Palo Alto PCCET Exam Topics:
| Section | Weight | Objectives |
|---|
| The Connected Globe | 25% | - Define the differences between hubs, switches, and routers- Differentiate between hubs, switches and routers.
- Define the role of hubs, switches and routers.
- Given a network diagram, Identify the icons for hubs, switches and routers.
- Understand the use of VLANs.
- Classify routed and routing protocols - Identify routed protocols.
- Identify routing protocols
- Differentiate between static and dynamic routing protocols.
- Differentiate between link state and distance vector.
- Summarize area networks and topologies - Identify the borders of collision domains.
- Identify the borders of broadcast domains.
- Identify different types of networks.
- Identify WAN technologies.
- Understand the advantages of SD-WAN.
- Understand LAN technologies.
- Explain the purpose of the Domain Name System (DNS) - Understand the DNS hierarchy.
- Understand the DNS record types.
- Understand how DNS record types are used.
- Identify a fully qualified domain name (FQDN).
- Identify categories of Internet of Things (IoT) - Identify IoT connectivity technologies.
- Identify the known security risks associated with IoT.
- Identify the security solutions for IoT devices.
- Differentiate between categories of IoT devices.
- Illustrate the structure of an IPV4/IPV6 address - Identify dotted decimal notation.
- Identify the structure of IPV6.
- Understand the purpose of IPV4 and IPV6 addressing.
- Understand the purpose of a default gateway.
- Understand the role of NAT
- Understand the role of ARP.
- Describe the purpose of IPV4 subnetting. - Understand binary to decimal conversion.
- Understand CIDR notation.
- Define classful subnetting.
- Given a scenario, identify the proper subnet mask.
- Understand the purpose of subnetting.
- Illustrate the OSI and TCP/IP models - Identify the order of the layers of both OSI and TCP/IP models.
- Compare the similarities of some OSI and TCP/IP models.
- Identify the function of each of the layers.
- Understand the advantages of using a layered model.
- Identify protocols at each layer.
- Explain the data encapsulation process - Understand the data encapsulation process.
- Understand the PDU format used at different layers.
- Classify the various types of network firewalls - Identify the characteristics of various types of network firewalls
- Understand the applications of the different types of network firewalls.
- Compare intrusion detection and intrusion prevention systems - Understand the concept of intrusion detection systems.
- Understand the concept of intrusion prevention systems.
- Differentiate between intrusion detection systems and intrusion prevention systems.
- Differentiate between knowledge-based and behavior-based systems.
- Define virtual private networks - Define virtual private networks.
- Differentiate between IPSec and SSL.
- Differentiate between the different tunneling protocols.
- Understand when to use a VPN.
- Understand the benefits of tunneling protocols.
- Explain data loss prevention - Define the purpose of data loss prevention.
- Understand what would be considered sensitive data.
- Understand what would be considered inappropriate data.
- Describe unified threat management - Differentiate between UTM and other portals logged into to do work.
- Understand how UTM integrates different aspects of content.
- Understand how the different content within the OSIs are being examined with UTM.
- Identify the security functions that are integrated with UTM.
- Define endpoint security basics - Understand what is an endpoint.
- Understand the advantages of endpoint security.
- Understand what endpoints can be supported.
- Given an environment, identify what security methods could be deployed.
- Understand the concept of a personal firewall.
- Understand what traffic flows through a personal firewall.
- Define host-based intrusion prevention systems.
- Understand the disadvantages of host-based intrusion prevention systems.
- Compare signature and container-based malware protection - Define signature-based malware protection.
- Define container-based malware protection.
- Differentiate between signature-based and container-based malware protection.
- Understand application whitelisting.
- Understand the concepts of false-positive and false-negative alerts.
- Define the purpose of anti-spyware software.
- Recognize types of mobile device management - Identify the capabilities of mobile device management.
- Identify the vulnerabilities of mobile devices.
- Identify different types of mobile devices.
- Understand how to secure devices using the MDM controls.
- Explain the purpose of identity and access management - Identify the As in the AAA model.
- Understand the purpose of identity and access management.
- Understand the risk of not using identity and access management.
- Understand the concept of least privilege.
- Understand the separation of duties.
- Understand RBAC and ABAC and Discretionary Access Control and Mandatory Access Control.
- Understand the user profile.
- Understand the impact of onboarding and offboarding from systems.
- Understand directory services.
- Describe configuration management - Understand configuration management.
- Identify how configuration management interacts with different development methodologies.
- Understand system services required for configuration Management.
- Identify next-generation firewall features and capabilities - Differentiate between NGFWs and FWs.
- Understand the integration of NGFWs with the cloud, networks and endpoints.
- Define App-ID.
- Define Content-ID.
- Define User-ID.
- Compare the NGFW four core subscription services - Differentiate between the four core NGFW subscription services.
- Define WildFire.
- Define URL Filtering.
- Define Threat Prevention.
- Define DNS security.
- Define the purpose of network security management (Panorama)
- Define Panorama services and controls.
- Understand network security management.
- Identify the deployment modes of Panorama.
|
| Fundamentals of Cybersecurity | 15% | - Identify Web 2.0/3.0 applications and services- List common Web 2.0/3.0 applications.
- Differentiate between SaaS, PaaS and IaaS.
- Distinguish between Web 2.0 and 3.0 applications and services.
- Recognize applications used to circumvent port-based firewalls - Identify applications by their port number.
- Understand port scanning.
- Understand how to use port scanning tools.
- Understand different risk levels of applications.
- Understand the impact of using non standard ports.
- Summarize cloud computing challenges and best practices - Define DevOps.
- Understand the impact of Service Level Agreements (SLA) with cloud contracts.
- Differentiate between cloud types.
- Understand the application of the security within the different types of clouds.
- Understand the impact of change management.
- Understand the roles within a cloud environment.
- Identify SaaS application risks - Understand the nature of data being stored in the SaaS application.
- Understand roles within a SaaS environment.
- Understand who has access to what within a system.
- Understand security controls for SaaS applications.
- Recognize cybersecurity laws and regulations - Understand the impact of governance regulation and compliance.
- Differentiate between major cybersecurity laws and implications.
- Understand governance versus regulations.
- Understand the code of professional conduct.
- List recent high-profile cyberattack examples - List recent high-profile cyberattack examples.
- Understand how to use CVE.
- Understand how to use CVS.
- Given a cyberattack example, identify what key vulnerability exists.
- Identify a leading indicator of a compromise.
- Discover attacker profiles and motivations. - Identify the different attacker profiles.
- Understand the different value levels of the information that needs to be protected.
- Identify motivations of different types of actors.
- Describe the modern cyberattack life-cycle - Understand the different phases of the modern cyber life-cycle.
- Understand events at each level of the cyber life-cycle.
- Classify malware types - Classify the different types of malware.
- Understand appropriate actions for the different types of malware.
- Identify the characteristics and capabilities for different types of malware.
- List the differences between vulnerabilities and exploits - Order the steps on the vulnerability/exploit timeline.
- Differentiate between vulnerabilities and exploits.
- Categorize spamming and phishing attacks - Differentiate between spamming and phishing attacks.
- Given specific examples, define the type of attack.
- Identify what the chain of events are as a result of an attack.
- Social Engineering - Identify different methodologies for social engineering.
- Identify what the chain events are as a result of social engineering.
- Cybersecurity Attacks - Differentiate between DoS and DDoS
- Define the functionality of bots and botnets.
- Differentiate between the use of a bot or botnets.
- Understand the type of IoT devices that are part of a botnet attack.
- Understand the purpose for Command and Control (C2).
- Differentiate the TCP/IP roles in DDoS attacks.
- Define the characteristics of advanced persistent threats - Understand advanced persistent threats.
- Understand the purpose for Command and Control (C2).
- Identify where the indicators are located.
- Recognize common Wi-Fi attacks - Differentiate between different types of Wi-Fi attacks.
- Identify common attack areas for Wi-Fi attacks.
- Understand how to monitor your Wi-Fi network.
- Define perimeter-based network security - Define perimeter-based network security.
- Define DMZ.
- Define where the perimeter is located.
- Differentiate between North and South and East and West Zones.
- Identify the types of devices used in perimeter defense.
- Understand the transition from a trusted network to an untrusted network.
- Explain Zero Trust design principles and architecture configuration - Define Zero Trust.
- Differentiate between Trust and Untrust zones.
- Identify the benefits of the Zero Trust model.
- Identify the design principles for Zero Trust.
- Understand microsegmentation.
- Define the capabilities of an effective Security Operating Platform - Understand the integration of services for Network, Endpoint, and Cloud services.
- Identify the capabilities of an effective Security Operating Platform.
- Understand the components of the Security Operating Platform.
- Recognize Palo Alto Networks Strata, Prisma, and Cortex Technologies - Identify examples of Palo Alto Networks technologies associated with securing the enterprise.
- Describe Palo Alto Networks approach to securing the cloud through the most comprehensive threat protection, governance, and compliance offering in the industry.
- Understand how Palo Alto Networks technology natively integrates network, endpoint, and cloud to stop sophisticated attacks.
|
| Elements of Security Operations | 30% | - List the six essential elements of effective security operations- Define the “Identify” SecOps function.
- Define the “Investigate” SecOps function.
- Define the “Mitigate” SecOps function.
- Define the “Improve” SecOps function.
- Describe the purpose of security information and event management (SIEM) and SOAR- Define SIEM.
- Define SOAR.
- Define incident and response procedures in a digital workflow format.
- Define the purpose of security orchestration, automation, and response.
- Describe the analysis tools used to detect evidence of a security compromise- Define the analysis tools used to detect evidence of a security compromise.
- Understand how to collect data that will be analyzed.
- Understand why we use analysis tools within a Security operationsenvironment.
- Define the responsibilities of a security operations engineering team.
- Describe features of Cortex XDR endpoint protection technology - Understand the Cortex platform in a Security Operations environment.
- Define the purpose of Cortex XDR for various endpoints.
- Describe how Cortex XSOAR improves SOC efficiency and how Cortex Data Lake improves SOC visibility- Understand how Cortex XSOAR improves Security Operations efficiency.
- Understand how Cortex Data Lake improves Security Operations visibility.
- Explain how AutoFocus gains threat intelligence for security analysis and response.
- Understand how AutoFocus gains threat intelligence for security analysis and response.
- Describe how AutoFocus can reduce the time required to investigate threats by leveraging third party services.
|
| Cloud Technologies | 30% | - Define the NIST cloud service and deployment models- Define the NIST cloud service models.
- Define the NIST cloud deployment models.
- Recognize and list cloud security challenges - Understand where vulnerabilities are in a shared community environment.
- Understand security responsibilities.
- Understand multi-tenancy.
- Differentiate between security tools in different environments.
- Define identity and access management controls for cloud resources.
- Understand different types of alerts and notifications.
- Identify the 4 Cs of cloud native security.
- Define the purpose of virtualization in cloud computing- Define the types of hypervisors.
- Describe popular cloud providers.
- Define economic benefits of cloud computing and virtualization.
- Understand the security implications of virtualization.
- Explain the purpose of containers in application deployment - Understand the purpose of containers.
- Differentiate containers versus virtual machines.
- Define Container as a Service.
- Differentiate hypervisor from a Docker.
- Discuss the purpose of serverless computing - Understand the purpose of serverless computing.
- Understand how serverless computing is used.
- Compare the differences between DevOps and DevSecOps - Define DevOps.
- Define DevSecOps.
- Illustrate the CI/CD pipeline.
- Explain governance and compliance related to deployment of SaaS applications
- Understand security compliance to protect data.
- Understand privacy regulations globally.
- Understand security compliance between local policies and SaaS applications.
- Illustrate traditional data security solution weaknesses
- Understand the cost of maintaining a physical data center.
- Differentiate between data center security weakness of traditional solution to cloud solution.
- Differentiate between data center security weakness of traditional solution to perimeter localization solution.
- Compare east-west and north-south traffic protection- Define east-west traffic patterns.
- Define north-south traffic patterns.
- Differentiate between east-west and north-south traffic patterns.
- Recognize the four phases of hybrid data center security - Define the four phases of hybrid data center security.
- Differentiate between traditional three-tier architectures and evolving virtual data centers.
- List the four pillars of cloud application security (Prisma Cloud) - Define cloud native security platform.
- Identify the four pillars of Prisma cloud application security.
- Illustrate the Prisma Access SASE architecture - Understand the concept of SASE.
- Define the SASE layer.
- Define the Network as a Service layer.
- Define how Prisma Access provides traffic protection.
- Compare sanctioned, tolerated and unsanctioned SaaS applications
- Define application use and behavior.
- List how to control sanctioned SaaS usage.
|
Palo Alto PCCET Exam Certification Details:
Get New PCCET Certification Practice Test Questions Exam Dumps: https://www.actualtestsquiz.com/PCCET-test-torrent.html
Real PCCET Exam Dumps Questions Valid PCCET Dumps PDF: https://drive.google.com/open?id=1G9b922rJsnPhmD1in_B6vEs_4YG4czb2