Skip to main content

PCCET Real Exam Questions

Palo Alto Networks Certified Cybersecurity Entry-level Technician (PCCET)

200 questions available · Page 1 of 20

Updated Exam DumpsVerified AnswersPass Guarantee

Get Complete Exam Dumps
Question 1 Single choice

Which protocol is responsible for the translation of an IP address to a MAC address?

  1. A

    DNS

  2. B

    ARP

  3. C

    NAT

  4. D

    DHCP

Show answer and explanation

Correct answer: B

Explanation

References:
https://www.techtarget.com/searchnetworking/definition/Address-Resolution-Protocol-ARP#:~:text=Address%20Resolution%20Protocol%20(ARP)
%20is,access%20control%20(MAC)% 20address

Question 2 Multiple choice

In a Software-as-a-Service (SaaS) environment, which two data exposures result from well-intentioned end users? (Choose two.)

  1. A

    Malicious Outsider

  2. B

    Promiscuous Share

  3. C

    Ghost Share

  4. D

    Malicious Insider

Show answer and explanation

Correct answers: B, D

Question 3 Single choice

Which type of IDS/IPS uses a baseline of normal network activity to identify unusual patterns or levels of network activity that may be indicative of an intrusion attempt?

  1. A

    Knowledge-based

  2. B

    Signature-based

  3. C

    Behavior-based

  4. D

    Database-based

Show answer and explanation

Correct answer: C

Explanation

IDSs and IPSs also can be classified as knowledge-based (or signature-based) or behavior-based (or
statistical anomaly-based) systems:
A knowledge-based system uses a database of known vulnerabilities and attack profiles to identify intrusion attempts. These types of systems have lower false-alarm rates than behavior-based systems but must be continually updated with new attack signatures to be effective. A behavior-based system uses a baseline of normal network activity to identify unusual patterns or levels of network activity that may be indicative of an intrusion attempt. These types of systems are more adaptive than knowledge-based systems and therefore may be more effective in detecting previously unknown vulnerabilities and attacks, but they have a much higher false-positive rate than knowledge-based systems

Question 4 Drag & drop

DRAG DROP

Match the attack definition to the type of security method used to protect against the attack.

Question diagram
Show answer and explanation
Correct answer diagram
Question 5 Drag & drop

DRAG DROP

Match the level of security required in the Shared Security Model by customer with the cloud services used.

Question diagram
Show answer and explanation
Correct answer diagram
Question 6 Single choice

Which option would be an example of PII that you need to prevent from leaving your enterprise network?

  1. A

    Credit card number

  2. B

    Trade secret

  3. C

    National security information

  4. D

    A symmetric encryption key

Show answer and explanation

Correct answer: A

Question 7 Single choice

Which network firewall primarily filters traffic based on source and destination IP address?

  1. A

    Proxy

  2. B

    Stateful

  3. C

    Stateless

  4. D

    Application

Show answer and explanation

Correct answer: B

Question 8 Multiple choice

Which two statements are true about servers in a demilitarized zone (DMZ)? (Choose two.)

  1. A

    They can be accessed by traffic from the internet.

  2. B

    They are located in the internal network.

  3. C

    They can expose servers in the internal network to attacks.

  4. D

    They are isolated from the internal network.

Show answer and explanation

Correct answers: A, D

Question 9 Single choice

What is the function of SOAR?

  1. A

    It records, monitors, correlates, and analyzes the security events in an IT environment in real time.

  2. B

    It helps with the coordination, execution, and automation of tasks between people and tools for faster response to cybersecurity attacks.

  3. C

    It collects, integrates, and normalizes your security data to simplify your security operations.

  4. D

    It provides prevention, detection, response, and investigation of attacks and threats by gathering and
    integrating all security data.

Show answer and explanation

Correct answer: D

Explanation

References:
https://www.paloaltonetworks.com/cyberpedia/what-is-soar#:~:text=Security%20orchestration%2C%20automation%20and%20response,all%20within%20a%20single%20platform

Question 10 Single choice

How can Cortex XSIAM reduce incident response times dramatically?

  1. A

    Through its incorporated threat intelligence management

  2. B

    Through its installation directly on the endpoint

  3. C

    Through its integration with custom TAXII feeds

  4. D

    Through its Al-driven threat detection and remediation capabilities

Show answer and explanation

Correct answer: D