Exam Details

  • Exam Code
    :PCDRA
  • Exam Name
    :Palo Alto Networks Certified Detection and Remediation Analyst (PCDRA)
  • Certification
    :Palo Alto Networks Certifications
  • Vendor
    :Palo Alto Networks
  • Total Questions
    :91 Q&As
  • Last Updated
    :May 03, 2025

Palo Alto Networks Palo Alto Networks Certifications PCDRA Questions & Answers

  • Question 71:

    You can star security events in which two ways? (Choose two.)

    A. Create an alert-starring configuration.

    B. Create an Incident-starring configuration.

    C. Manually star an alert.

    D. Manually star an Incident.

  • Question 72:

    In Cortex XDR management console scheduled reports can be forwarded to which of the following applications/services?

    A. Salesforce

    B. Jira

    C. Service Now

    D. Slack

  • Question 73:

    What is the outcome of creating and implementing an alert exclusion?

    A. The Cortex XDR agent will allow the process that was blocked to run on the endpoint.

    B. The Cortex XDR console will hide those alerts.

    C. The Cortex XDR agent will not create an alert for this event in the future.

    D. The Cortex XDR console will delete those alerts and block ingestion of them in the future.

  • Question 74:

    Which statement is true based on the following Agent Auto Upgrade widget?

    A. There are a total of 689 Up To Date agents.

    B. Agent Auto Upgrade was enabled but not on all endpoints.

    C. Agent Auto Upgrade has not been enabled.

    D. There are more agents in Pending status than In Progress status.

  • Question 75:

    Where would you go to add an exception to exclude a specific file hash from examination by the Malware profile for a Windows endpoint?

    A. Find the Malware profile attached to the endpoint, Under Portable Executable and DLL Examination add the hash to the allow list.

    B. From the rules menu select new exception, fill out the criteria, choose the scope to apply it to, hit save.

    C. Find the exceptions profile attached to the endpoint, under process exceptions select local analysis, paste the hash and save.

    D. In the Action Center, choose Allow list, select new action, select add to allow list, add your hash to the list, and apply it.

  • Question 76:

    Which of the following represents a common sequence of cyber-attack tactics?

    A. Actions on the objective » Reconnaissance »Weaponizationand Delivery » Exploitation » Installation » Command and Control

    B. Installation >> Reconnaissance »Weaponizationand Delivery » Exploitation » Command and Control » Actions on the objective

    C. Reconnaissance »Weaponizationand Delivery » Exploitation » Installation » Command and Control » Actions on the objective

    D. Reconnaissance >> Installation »Weaponizationand Delivery » Exploitation » Command and Control » Actions on the objective

  • Question 77:

    Live Terminal uses which type of protocol to communicate with the agent on the endpoint?

    A. NetBIOS over TCP

    B. WebSocket

    C. UDP and a random port

    D. TCP, over port 80

  • Question 78:

    Which of the following Live Terminal options are available for Android systems?

    A. Live Terminal is not supported.

    B. Stop an app.

    C. Run APK scripts.

    D. Run Android commands.

  • Question 79:

    Where can SHA256 hash values be used in Cortex XDR Malware Protection Profiles?

    A. in the macOS Malware Protection Profile to indicate allowed signers

    B. in the Linux Malware Protection Profile to indicate allowed Java libraries

    C. SHA256 hashes cannot be used in Cortex XDR Malware Protection Profiles

    D. in the Windows Malware Protection Profile to indicate allowed executables

  • Question 80:

    What kind of the threat typically encrypts user files?

    A. ransomware

    B. SQL injection attacks

    C. Zero-day exploits

    D. supply-chain attacks

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Palo Alto Networks exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PCDRA exam preparations and Palo Alto Networks certification application, do not hesitate to visit our Vcedump.com to find your solutions here.