Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Palo Alto Networks logo

Palo Alto NetworksCertified Cloud Security Engineer

Domain 2Objective 1

2.1 Explain the Onboarding and Configuration Process for Cloud Provider Resources (e.g., AWS, Azure, GCP, OCI) CLOUD-SECURITY-ENGINEER Practice Questions (Page 5)

Part of the Integration domain, which accounts for 16% of the CLOUD-SECURITY-ENGINEER exam.

29questions here
6free pages
8concepts
16%of the exam

Questions 21–25

  1. 21foundation · easy

    Which cloud resource can be assessed using agentless scanning?

    Select an answer first
  2. 22expert · hard

    A company is onboarding its GCP environment to Prisma Cloud. They have enabled the Audit Log integration and are ingesting logs into Cortex XSIAM. The security team wants to detect and respond to a specific type of IAM activity, such as a user creating a new service account key. What is the most efficient way to set this up?

    Select an answer first
  3. 23foundation · easy

    Which Azure service provides audit logs that can be integrated into Prisma Cloud for monitoring?

    Select an answer first
  4. 24application · medium

    A security analyst is investigating a potential breach in their AWS environment. They have ingested CloudTrail logs into Cortex XSIAM. The analyst wants to identify all API calls made by a specific IAM user in the last 24 hours, including the source IP addresses. What is the most efficient way to do this in Cortex XSIAM?

    Select an answer first
  5. 25foundation · easy

    What is the main difference between Cloud scan and Prisma Cloud Outpost?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “CLOUD-SECURITY-ENGINEER” is a trademark of its owner, used for identification only.