Which of the following protection modules is checked first in the Cortex XDR Windows agent malware protection flow?
A. Hash Verdict Determination
B. Behavioral Threat Protection
C. Restriction Policy
D. Child Process Protection
Which license is required when deploying Cortex XDR agent on Kubernetes Clusters as a DaemonSet?
A. Cortex XDR Pro per TB
B. Host Insights
C. Cortex XDR Pro per Endpoint
D. Cortex XDR Cloud per Host
Which module provides the best visibility to view vulnerabilities?
A. Live Terminal module
B. Device Control Violations module
C. Host Insights module
D. Forensics module
Which type of IOC can you define in Cortex XDR?
A. Destination IP Address
B. Source IP Address
C. Source port
D. Destination IPAddress: Destination
To create a BIOC rule with XQL query you must at a minimum filter on which field in order for it to be a valid BIOC rule?
A. causality_chain
B. endpoint_name
C. threat_event
D. event_type
What is the Wildfire analysis file size limit for Windows PE files?
A. No Limit
B. 500MB
C. 100MB
D. 1GB
Which of the following policy exceptions applies to the following description?
`An exception allowing specific PHP files'
A. Support exception
B. Local file threat examination exception
C. Behavioral threat protection rule exception
D. Process exception
Which Exploit ProtectionModule (EPM) can be used to prevent attacks based on OS function?
A. UASLR
B. JIT Mitigation
C. Memory Limit Heap Spray Check
D. DLL Security
Which statement regarding scripts in Cortex XDR is true?
A. Any version of Python script can be run.
B. The level of risk is assigned to the script upon import.
C. Any script can be imported including Visual Basic (VB) scripts.
D. The script is run on the machine uploading the script to ensure that it is operational.
Which search methods is supported by File Search and Destroy?
A. File Seek and Destroy
B. File Search and Destroy
C. File Seek and Repair
D. File Search and Repair
Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Palo Alto Networks exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PCDRA exam preparations and Palo Alto Networks certification application, do not hesitate to visit our Vcedump.com to find your solutions here.