
Palo Alto NetworksCertified Cloud Security Engineer
Domain 3Objective 6
3.6 Identify and Describe Methods for Managing Custom and Out-Of-The-Box Compliance Standards / Controls, Assessments, and Reporting CLOUD-SECURITY-ENGINEER Practice Questions (Page 1)
Part of the Posture Security domain, which accounts for 22% of the CLOUD-SECURITY-ENGINEER exam.
30questions here
6free pages
7concepts
22%of the exam
Questions 1–5
- 1
A compliance team wants to assess their cloud environment against the CIS AWS Foundations Benchmark. How would they typically accomplish this using the platform's compliance features?
Select an answer first - 2
After running a compliance assessment against a custom standard, you see that several virtual machines are marked as non-compliant for a control that requires 'Managed Disks' to be used. You need to understand why these specific VMs are failing and communicate this to the VM owners. What should you do?
Select an answer first - 3
You have created a custom compliance standard with a control that checks for 'Diagnostic logs' being enabled on all resources. After running an assessment, you find that many resources are non-compliant. You need to refine the control to exclude a specific resource group that is used for testing and should not be evaluated. What is the best way to achieve this?
Select an answer first - 4
A security engineer needs to assess the organization's cloud posture against a set of internal security requirements that are not covered by any predefined compliance standard. What is the correct approach in the Prisma Cloud platform?
Select an answer first - 5
A security team wants to ensure that compliance assessments are performed automatically on a weekly basis. What feature should they use?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “CLOUD-SECURITY-ENGINEER” is a trademark of its owner, used for identification only.