exam questions

Exam PCCSE All Questions

View all questions & answers for the PCCSE exam

Exam PCCSE topic 1 question 107 discussion

Actual exam question from Palo Alto Networks's PCCSE
Question #: 107
Topic #: 1
[All PCCSE Questions]

A manager informs the SOC that one or more RDS instances have been compromised and the SOC needs to make sure production RDS instances are NOT publicly accessible.

Which action should the SOC take to follow security best practices?

  • A. Enable “AWS S3 bucket is publicly accessible” policy and manually remediate each alert.
  • B. Enable “AWS RDS database instance is publicly accessible” policy and for each alert, check that it is a production instance, and then manually remediate.
  • C. Enable “AWS S3 bucket is publicly accessible” policy and add policy to an auto-remediation alert rule.
  • D. Enable “AWS RDS database instance is publicly accessible” policy and add policy to an auto-remediation alert rule.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Leonel01
10 months, 2 weeks ago
Selected Answer: B
B - D answer doesn't say anything about production eviroment. True that D includes all enviroments meaning includes production but you're doing more than required causing issues in other enviroments.
upvoted 1 times
...
Spippolo
1 year, 11 months ago
Selected Answer: D
D --> To enable automated remediation, identify the set of policies that you want to remediate automatically and verify that Prisma Cloud has the required permissions in the associated cloud environments. Then Create an Alert Rule for Run-Time Checks that enables automated remediation for the set of policies you identified.
upvoted 1 times
...
Jihe
1 year, 11 months ago
D https://docs.paloaltonetworks.com/prisma/prisma-cloud/prisma-cloud-admin/manage-prisma-cloud-alerts/configure-prisma-cloud-to-automatically-remediate-alerts
upvoted 1 times
...
Chichi23
2 years ago
D. Enable “AWS RDS database instance is publicly accessible” policy and add policy to an auto-remediation alert rule.
upvoted 1 times
...
Redrum702
2 years, 3 months ago
D https://live.paloaltonetworks.com/t5/prisma-cloud-articles/prisma-cloud-release-notes-for-july-14-2020/ta-p/340499
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago