[Oct 27, 2021] PCCET Exam Dumps PDF Guaranteed Success with Accurate & Updated Questions [Q18-Q39]

Share

[Oct 27, 2021] PCCET Exam Dumps PDF Guaranteed Success  with Accurate & Updated Questions

Pass PCCET Exam - Real Test Engine PDF with 77 Questions

NEW QUESTION 18
An Administrator wants to maximize the use of a network address. The network is 192.168.6.0/24 and there are three subnets that need to be created that can not overlap. Which subnet would you use for the network with 120 hosts?
Requirements for the three subnets: Subnet 1: 3 host addresses
Subnet 2: 25 host addresses
Subnet 3: 120 host addresses

  • A. 192.168.6.160/29
  • B. 192.168.6.128/27
  • C. 192.168.6.0/25
  • D. 192.168.6.168/30

Answer: C

 

NEW QUESTION 19
Which Palo Alto Networks tool is used to prevent endpoint systems from running malware executables such as viruses, trojans, and rootkits?

  • A. Cortex XDR
  • B. AutoFocus
  • C. App-ID
  • D. Expedition

Answer: A

 

NEW QUESTION 20
In which two cloud computing service models are the vendors responsible for vulnerability and patch management of the underlying operating system? (Choose two.)

  • A. IaaS
  • B. SaaS
  • C. On-premises
  • D. PaaS

Answer: B,D

 

NEW QUESTION 21
Which item accurately describes a security weakness that is caused by implementing a "ports first" data security solution in a traditional data center?

  • A. You may have to use port numbers greater than 1024 for your business-critical applications.
  • B. You may not be able to open up enough ports for your business-critical applications which will increase the attack surface area.
  • C. You may have to open up multiple ports and these ports could also be used to gain unauthorized entry into your datacenter.
  • D. You may not be able to assign the correct port to your business-critical applications.

Answer: C

 

NEW QUESTION 22
How does adopting a serverless model impact application development?

  • A. slows down the deployment of application code, but it improves the quality of code development
  • B. costs more to develop application code because it uses more compute resources
  • C. reduces the operational overhead necessary to deploy application code
  • D. prevents developers from focusing on just the application code because you need to provision the underlying infrastructure to run the code

Answer: C

 

NEW QUESTION 23
Which statement describes DevOps?

  • A. DevOps is a culture that unites the Development and Operations teams throughout the software delivery process
  • B. DevOps is its own separate team
  • C. DevOps is a set of tools that assists the Development and Operations teams throughout the software delivery process
  • D. DevOps is a combination of the Development and Operations teams

Answer: C

 

NEW QUESTION 24
Which type of Software as a Service (SaaS) application provides business benefits, is fast to deploy, requires minimal cost and is infinitely scalable?

  • A. Benign
  • B. Secure
  • C. Sanctioned
  • D. Tolerated

Answer: C

Explanation:
Explanation/Reference:

 

NEW QUESTION 25
Why have software developers widely embraced the use of containers?

  • A. Containers simplify the building and deploying of cloud native applications.
  • B. Containers share application dependencies with other containers and with their host computer.
  • C. Containers require separate development and production environments to promote authentic code.
  • D. Containers are host specific and are not portable across different virtual machine hosts.

Answer: A

 

NEW QUESTION 26
During the OSI layer 3 step of the encapsulation process, what is the Protocol Data Unit (PDU) called when the IP stack adds source (sender) and destination (receiver) IP addresses?

  • A. Data
  • B. Packet
  • C. Frame
  • D. Segment

Answer: B

 

NEW QUESTION 27
When signature-based antivirus software detects malware, what three things does it do to provide protection?
(Choose three.)

  • A. quarantine the infected file
  • B. delete the infected file
  • C. alert system administrators
  • D. decrypt the infected file using base64
  • E. remove the infected file's extension

Answer: A,B,E

 

NEW QUESTION 28
Which type of LAN technology is being displayed in the diagram?

  • A. Spine Leaf Topology
  • B. Bus Topology
  • C. Star Topology
  • D. Mesh Topology

Answer: D

 

NEW QUESTION 29
Which subnet does the host 192.168.19.36/27 belong?

  • A. 192.168.19.32
  • B. 192.168.19.0
  • C. 192.168.19.64
  • D. 192.168.19.16

Answer: A

 

NEW QUESTION 30
Routing Information Protocol (RIP), uses what metric to determine how network traffic should flow?

  • A. Split Horizon
  • B. Hop Count
  • C. Shortest Path
  • D. Path Vector

Answer: B

 

NEW QUESTION 31
Match the Identity and Access Management (IAM) security control with the appropriate definition.

Answer:

Explanation:

 

NEW QUESTION 32
When signature-based antivirus software detects malware, what three things does it do to provide protection?
(Choose three.)

  • A. quarantine the infected file
  • B. delete the infected file
  • C. alert system administrators
  • D. decrypt the infected file using base64
  • E. remove the infected file's extension

Answer: A,B,E

Explanation:
Explanation

 

NEW QUESTION 33
Match each description to a Security Operating Platform key capability.

Answer:

Explanation:

 

NEW QUESTION 34
How does DevSecOps improve the Continuous Integration/Continuous Deployment (CI/CD) pipeline?

  • A. DevSecOps ensures the pipeline has horizontal intersections for application code deployment
  • B. DevSecOps unites the Security team with the Development and Operations teams to integrate security into the CI/CD pipeline
  • C. DevSecOps does security checking after the application code has been processed through the CI/CD pipeline
  • D. DevSecOps improves pipeline security by assigning the security team as the lead team for continuous deployment

Answer: B

 

NEW QUESTION 35
What are two key characteristics of a Type 1 hypervisor? (Choose two.)

  • A. runs within an operating system
  • B. runs without any vulnerability issues
  • C. allows multiple, virtual (or guest) operating systems to run concurrently on a single physical host computer
  • D. is hardened against cyber attacks

Answer: A,C

 

NEW QUESTION 36
Which Palo Alto Networks product provides playbooks with 300+ multivendor integrations that help solve any security use case?

  • A. Cortex XDR
  • B. Cortex XSOAR
  • C. Prisma Cloud
  • D. AutoFocus

Answer: B

 

NEW QUESTION 37
Which endpoint tool or agent can enact behavior-based protection?

  • A. Cortex XDR
  • B. MineMeld
  • C. DNS Security
  • D. AutoFocus

Answer: A

Explanation:
Explanation

 

NEW QUESTION 38
Which characteristic of serverless computing enables developers to quickly deploy application code?

  • A. Uploading the application code itself, without having to provision a full container image or any OS virtual machine components
  • B. Using Container as a Service (CaaS) to deploy application containers to run their code.
  • C. Uploading cloud service autoscaling services to deploy more virtual machines to run their application code based on user demand
  • D. Using cloud service spot pricing to reduce the cost of using virtual machines to run their application code

Answer: C

 

NEW QUESTION 39
......


Palo Alto PCCET Exam Topics:

SectionWeightObjectives
The Connected Globe25%- Define the differences between hubs, switches, and routers
  • Differentiate between hubs, switches and routers.
  • Define the role of hubs, switches and routers.
  • Given a network diagram, Identify the icons for hubs, switches and routers.
  • Understand the use of VLANs.

- Classify routed and routing protocols

  • Identify routed protocols.
  • Identify routing protocols
  • Differentiate between static and dynamic routing protocols.
  • Differentiate between link state and distance vector.

- Summarize area networks and topologies

  • Identify the borders of collision domains.
  • Identify the borders of broadcast domains.
  • Identify different types of networks.
  • Identify WAN technologies.
  • Understand the advantages of SD-WAN.
  • Understand LAN technologies.

- Explain the purpose of the Domain Name System (DNS)

  • Understand the DNS hierarchy.
  • Understand the DNS record types.
  • Understand how DNS record types are used.
  • Identify a fully qualified domain name (FQDN).

- Identify categories of Internet of Things (IoT)

  • Identify IoT connectivity technologies.
  • Identify the known security risks associated with IoT.
  • Identify the security solutions for IoT devices.
  • Differentiate between categories of IoT devices.

- Illustrate the structure of an IPV4/IPV6 address

  • Identify dotted decimal notation.
  • Identify the structure of IPV6.
  • Understand the purpose of IPV4 and IPV6 addressing.
  • Understand the purpose of a default gateway.
  • Understand the role of NAT
  • Understand the role of ARP.

- Describe the purpose of IPV4 subnetting.

  • Understand binary to decimal conversion.
  • Understand CIDR notation.
  • Define classful subnetting.
  • Given a scenario, identify the proper subnet mask.
  • Understand the purpose of subnetting.

- Illustrate the OSI and TCP/IP models

  • Identify the order of the layers of both OSI and TCP/IP models.
  • Compare the similarities of some OSI and TCP/IP models.
  • Identify the function of each of the layers.
  • Understand the advantages of using a layered model.
  • Identify protocols at each layer.

- Explain the data encapsulation process

  • Understand the data encapsulation process.
  • Understand the PDU format used at different layers.

- Classify the various types of network firewalls

  • Identify the characteristics of various types of network firewalls
  • Understand the applications of the different types of network firewalls.

- Compare intrusion detection and intrusion prevention systems

  • Understand the concept of intrusion detection systems.
  • Understand the concept of intrusion prevention systems.
  • Differentiate between intrusion detection systems and intrusion prevention systems.
  • Differentiate between knowledge-based and behavior-based systems.

- Define virtual private networks

  • Define virtual private networks.
  • Differentiate between IPSec and SSL.
  • Differentiate between the different tunneling protocols.
  • Understand when to use a VPN.
  • Understand the benefits of tunneling protocols.

- Explain data loss prevention

  • Define the purpose of data loss prevention.
  • Understand what would be considered sensitive data.
  • Understand what would be considered inappropriate data.

- Describe unified threat management

  • Differentiate between UTM and other portals logged into to do work.
  • Understand how UTM integrates different aspects of content.
  • Understand how the different content within the OSIs are being examined with UTM.
  • Identify the security functions that are integrated with UTM.

- Define endpoint security basics

  • Understand what is an endpoint.
  • Understand the advantages of endpoint security.
  • Understand what endpoints can be supported.
  • Given an environment, identify what security methods could be deployed.
  • Understand the concept of a personal firewall.
  • Understand what traffic flows through a personal firewall.
  • Define host-based intrusion prevention systems.
  • Understand the disadvantages of host-based intrusion prevention systems.

- Compare signature and container-based malware protection

  • Define signature-based malware protection.
  • Define container-based malware protection.
  • Differentiate between signature-based and container-based malware protection.
  • Understand application whitelisting.
  • Understand the concepts of false-positive and false-negative alerts.
  • Define the purpose of anti-spyware software.

- Recognize types of mobile device management

  • Identify the capabilities of mobile device management.
  • Identify the vulnerabilities of mobile devices.
  • Identify different types of mobile devices.
  • Understand how to secure devices using the MDM controls.

- Explain the purpose of identity and access management

  • Identify the As in the AAA model.
  • Understand the purpose of identity and access management.
  • Understand the risk of not using identity and access management.
  • Understand the concept of least privilege.
  • Understand the separation of duties.
  • Understand RBAC and ABAC and Discretionary Access Control and Mandatory Access Control.
  • Understand the user profile.
  • Understand the impact of onboarding and offboarding from systems.
  • Understand directory services.

- Describe configuration management

  • Understand configuration management.
  • Identify how configuration management interacts with different development methodologies.
  • Understand system services required for configuration Management.

- Identify next-generation firewall features and capabilities

  • Differentiate between NGFWs and FWs.
  • Understand the integration of NGFWs with the cloud, networks and endpoints.
  • Define App-ID.
  • Define Content-ID.
  • Define User-ID.

- Compare the NGFW four core subscription services

  • Differentiate between the four core NGFW subscription services.
  • Define WildFire.
  • Define URL Filtering.
  • Define Threat Prevention.
  • Define DNS security.
- Define the purpose of network security management (Panorama)
  • Define Panorama services and controls.
  • Understand network security management.
  • Identify the deployment modes of Panorama.
Fundamentals of Cybersecurity15%- Identify Web 2.0/3.0 applications and services
  • List common Web 2.0/3.0 applications.
  • Differentiate between SaaS, PaaS and IaaS.
  • Distinguish between Web 2.0 and 3.0 applications and services.

- Recognize applications used to circumvent port-based firewalls

  • Identify applications by their port number.
  • Understand port scanning.
  • Understand how to use port scanning tools.
  • Understand different risk levels of applications.
  • Understand the impact of using non standard ports.

- Summarize cloud computing challenges and best practices

  • Define DevOps.
  • Understand the impact of Service Level Agreements (SLA) with cloud contracts.
  • Differentiate between cloud types.
  • Understand the application of the security within the different types of clouds.
  • Understand the impact of change management.
  • Understand the roles within a cloud environment.

- Identify SaaS application risks

  • Understand the nature of data being stored in the SaaS application.
  • Understand roles within a SaaS environment.
  • Understand who has access to what within a system.
  • Understand security controls for SaaS applications.

- Recognize cybersecurity laws and regulations

  • Understand the impact of governance regulation and compliance.
  • Differentiate between major cybersecurity laws and implications.
  • Understand governance versus regulations.
  • Understand the code of professional conduct.

- List recent high-profile cyberattack examples

  • List recent high-profile cyberattack examples.
  • Understand how to use CVE.
  • Understand how to use CVS.
  • Given a cyberattack example, identify what key vulnerability exists.
  • Identify a leading indicator of a compromise.

- Discover attacker profiles and motivations.

  • Identify the different attacker profiles.
  • Understand the different value levels of the information that needs to be protected.
  • Identify motivations of different types of actors.

- Describe the modern cyberattack life-cycle

  • Understand the different phases of the modern cyber life-cycle.
  • Understand events at each level of the cyber life-cycle.

- Classify malware types

  • Classify the different types of malware.
  • Understand appropriate actions for the different types of malware.
  • Identify the characteristics and capabilities for different types of malware.

- List the differences between vulnerabilities and exploits

  • Order the steps on the vulnerability/exploit timeline.
  • Differentiate between vulnerabilities and exploits.

- Categorize spamming and phishing attacks

  • Differentiate between spamming and phishing attacks.
  • Given specific examples, define the type of attack.
  • Identify what the chain of events are as a result of an attack.

- Social Engineering

  • Identify different methodologies for social engineering.
  • Identify what the chain events are as a result of social engineering.

- Cybersecurity Attacks

  • Differentiate between DoS and DDoS
  • Define the functionality of bots and botnets.
  • Differentiate between the use of a bot or botnets.
  • Understand the type of IoT devices that are part of a botnet attack.
  • Understand the purpose for Command and Control (C2).
  • Differentiate the TCP/IP roles in DDoS attacks.

- Define the characteristics of advanced persistent threats

  • Understand advanced persistent threats.
  • Understand the purpose for Command and Control (C2).
  • Identify where the indicators are located.

- Recognize common Wi-Fi attacks

  • Differentiate between different types of Wi-Fi attacks.
  • Identify common attack areas for Wi-Fi attacks.
  • Understand how to monitor your Wi-Fi network.

- Define perimeter-based network security

  • Define perimeter-based network security.
  • Define DMZ.
  • Define where the perimeter is located.
  • Differentiate between North and South and East and West Zones.
  • Identify the types of devices used in perimeter defense.
  • Understand the transition from a trusted network to an untrusted network.

- Explain Zero Trust design principles and architecture configuration

  • Define Zero Trust.
  • Differentiate between Trust and Untrust zones.
  • Identify the benefits of the Zero Trust model.
  • Identify the design principles for Zero Trust.
  • Understand microsegmentation.

- Define the capabilities of an effective Security Operating Platform

  • Understand the integration of services for Network, Endpoint, and Cloud services.
  • Identify the capabilities of an effective Security Operating Platform.
  • Understand the components of the Security Operating Platform.

- Recognize Palo Alto Networks Strata, Prisma, and Cortex Technologies

  • Identify examples of Palo Alto Networks technologies associated with securing the enterprise.
  • Describe Palo Alto Networks approach to securing the cloud through the most comprehensive threat protection, governance, and compliance offering in the industry.
  • Understand how Palo Alto Networks technology natively integrates network, endpoint, and cloud to stop sophisticated attacks.
Elements of Security Operations30%- List the six essential elements of effective security operations
  • Define the “Identify” SecOps function.
  • Define the “Investigate” SecOps function.
  • Define the “Mitigate” SecOps function.
  • Define the “Improve” SecOps function.
- Describe the purpose of security information and event management (SIEM) and SOAR
  • Define SIEM.
  • Define SOAR.
  • Define incident and response procedures in a digital workflow format.
  • Define the purpose of security orchestration, automation, and response.
- Describe the analysis tools used to detect evidence of a security compromise
  • Define the analysis tools used to detect evidence of a security compromise.
  • Understand how to collect data that will be analyzed.
  • Understand why we use analysis tools within a Security operationsenvironment.
  • Define the responsibilities of a security operations engineering team.

- Describe features of Cortex XDR endpoint protection technology

  • Understand the Cortex platform in a Security Operations environment.
  • Define the purpose of Cortex XDR for various endpoints.
- Describe how Cortex XSOAR improves SOC efficiency and how Cortex Data Lake improves SOC visibility
  • Understand how Cortex XSOAR improves Security Operations efficiency.
  • Understand how Cortex Data Lake improves Security Operations visibility.
- Explain how AutoFocus gains threat intelligence for security analysis and response.
  • Understand how AutoFocus gains threat intelligence for security analysis and response.
  • Describe how AutoFocus can reduce the time required to investigate threats by leveraging third party services.


Cloud Technologies30%- Define the NIST cloud service and deployment models
  • Define the NIST cloud service models.
  • Define the NIST cloud deployment models.

- Recognize and list cloud security challenges

  • Understand where vulnerabilities are in a shared community environment.
  • Understand security responsibilities.
  • Understand multi-tenancy.
  • Differentiate between security tools in different environments.
  • Define identity and access management controls for cloud resources.
  • Understand different types of alerts and notifications.
  • Identify the 4 Cs of cloud native security.
- Define the purpose of virtualization in cloud computing
  • Define the types of hypervisors.
  • Describe popular cloud providers.
  • Define economic benefits of cloud computing and virtualization.
  • Understand the security implications of virtualization.

- Explain the purpose of containers in application deployment

  • Understand the purpose of containers.
  • Differentiate containers versus virtual machines.
  • Define Container as a Service.
  • Differentiate hypervisor from a Docker.

- Discuss the purpose of serverless computing

  • Understand the purpose of serverless computing.
  • Understand how serverless computing is used.

- Compare the differences between DevOps and DevSecOps

  • Define DevOps.
  • Define DevSecOps.
  • Illustrate the CI/CD pipeline.
- Explain governance and compliance related to deployment of SaaS applications
  • Understand security compliance to protect data.
  • Understand privacy regulations globally.
  • Understand security compliance between local policies and SaaS applications.
- Illustrate traditional data security solution weaknesses
  • Understand the cost of maintaining a physical data center.
  • Differentiate between data center security weakness of traditional solution to cloud solution.
  • Differentiate between data center security weakness of traditional solution to perimeter localization solution.
- Compare east-west and north-south traffic protection
  • Define east-west traffic patterns.
  • Define north-south traffic patterns.
  • Differentiate between east-west and north-south traffic patterns.

- Recognize the four phases of hybrid data center security

  • Define the four phases of hybrid data center security.
  • Differentiate between traditional three-tier architectures and evolving virtual data centers.

- List the four pillars of cloud application security (Prisma Cloud)

  • Define cloud native security platform.
  • Identify the four pillars of Prisma cloud application security.

- Illustrate the Prisma Access SASE architecture

  • Understand the concept of SASE.
  • Define the SASE layer.
  • Define the Network as a Service layer.
  • Define how Prisma Access provides traffic protection.
- Compare sanctioned, tolerated and unsanctioned SaaS applications
  • Define application use and behavior.
  • List how to control sanctioned SaaS usage.



Palo Alto PCCET Exam Certification Details:

Exam Price$110 USD
Sample QuestionsPalo Alto PCCET Sample Questions
Duration90 minutes
Number of Questions75
Recommended TrainingIntroduction to Cybersecurity
Fundamentals of Network Security
Fundamentals of Cloud Security
Fundamentals of SOC (Security Operations Center)
Exam RegistrationPEARSON VUE
Exam NameCybersecurity Entry-level Technician
Passing ScoreVariable (70-80 / 100 Approx.)
Exam CodePCCET

 

Get New PCCET Certification Practice Test Questions Exam Dumps: https://www.actualtestsquiz.com/PCCET-test-torrent.html

Real PCCET Exam Dumps Questions Valid PCCET Dumps PDF: https://drive.google.com/open?id=1G9b922rJsnPhmD1in_B6vEs_4YG4czb2