
Palo Alto NetworksCertified Cybersecurity Practitioner
Domain 5Objective 5
5.5 Explain Behavioral Threat Prevention CYBERSECURITY-PRACTITIONER Practice Questions (Page 3)
Part of the Endpoint Security domain, which accounts for 15% of the CYBERSECURITY-PRACTITIONER exam.
30questions here
6free pages
6concepts
15%of the exam
Questions 11–15
- 11
An organization is concerned about ransomware that uses legitimate system tools like PowerShell to execute malicious scripts. The security team wants to detect this without relying on known file signatures. Which combination of behavioral mechanisms would be most effective?
Select an answer first - 12
A company's endpoint protection platform has behavioral threat prevention enabled. An alert is triggered for a process that is attempting to access the LSASS process memory, which is a common credential theft technique. The platform's automated response is set to 'contain'. However, the security team is concerned that the containment action might also block a legitimate security tool that also accesses LSASS for monitoring purposes. What is the best way to handle this situation?
Select an answer first - 13
Which action is an example of a remediation step that behavioral threat prevention might automatically perform?
Select an answer first - 14
Which combination of endpoint security features best illustrates layered defense with behavioral threat prevention?
Select an answer first - 15
A behavioral threat prevention system detects a process that is attempting to disable the Windows Defender service and delete volume shadow copies. The system automatically responds. Which response is most likely to be triggered?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “CYBERSECURITY-PRACTITIONER” is a trademark of its owner, used for identification only.