A manager informs the SOC that one or more RDS instances have been compromised and the SOC needs to make sure production RDS instances are NOT publicly accessible.
Which action should the SOC take to follow security best practices?
A.
Enable “AWS S3 bucket is publicly accessible” policy and manually remediate each alert.
B.
Enable “AWS RDS database instance is publicly accessible” policy and for each alert, check that it is a production instance, and then manually remediate.
C.
Enable “AWS S3 bucket is publicly accessible” policy and add policy to an auto-remediation alert rule.
D.
Enable “AWS RDS database instance is publicly accessible” policy and add policy to an auto-remediation alert rule.
B - D answer doesn't say anything about production eviroment. True that D includes all enviroments meaning includes production but you're doing more than required causing issues in other enviroments.
D --> To enable automated remediation, identify the set of policies that you want to remediate automatically and verify that Prisma Cloud has the required permissions in the associated cloud environments. Then Create an Alert Rule for Run-Time Checks that enables automated remediation for the set of policies you identified.
D
https://docs.paloaltonetworks.com/prisma/prisma-cloud/prisma-cloud-admin/manage-prisma-cloud-alerts/configure-prisma-cloud-to-automatically-remediate-alerts
D
https://live.paloaltonetworks.com/t5/prisma-cloud-articles/prisma-cloud-release-notes-for-july-14-2020/ta-p/340499
upvoted 2 times
...
This section is not available anymore. Please use the main Exam Page.PCCSE Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Leonel01
10 months, 2 weeks agoSpippolo
1 year, 11 months agoJihe
1 year, 11 months agoChichi23
2 years agoRedrum702
2 years, 3 months ago