Practice Palo Alto Networks PCDRA Exam Questions
-
-
Page: 1/19
Total 91 Questions
Question No 1
Phishing belongs which of the following MITRE ATT&CK tactics?
Question No 2
When creating a BIOC rule, which XQL query can be used?
A.
dataset = xdr_data | filter event_sub_type = PROCESS_START and action_process_image_name ~= ".*?\.(?:pdf|docx)\.exe"
B.
dataset = xdr_data | filter event_type = PROCESS and event_sub_type = PROCESS_START and action_process_image_name ~= ".*?\.(?:pdf|docx)\.exe"
C.
dataset = xdr_data | filter action_process_image_name ~= ".*?\.(?:pdf|docx)\.exe" | fields action_process_image
D.
dataset = xdr_data | filter event_behavior = true event_sub_type = PROCESS_START and action_process_image_name ~= ".*?\.(?:pdf|docx)\.exe"
Question No 3
Which built - in dashboard would be the best option for an executive, if they were looking for the Mean Time to Resolution (MTTR) metric?
Question No 4
What are two purposes of “Respond to Malicious Causality Chains” in a Cortex XDR Windows Malware profile? (Choose two.)
Question No 5
When creating a custom XQL query in a dashboard, how would a user save that XQL query to the Widget Library?
-
Page: 1/19
Total 91 Questions
-