
Palo Alto NetworksCertified XSIAM Engineer
Domain 1Objective 5
1.5 Configure User Roles, Permissions, and Access Controls XSIAM-ENGINEER Practice Questions (Page 4)
Part of the Planning and Installation domain, which accounts for 22% of the XSIAM-ENGINEER exam.
23questions here
5free pages
7concepts
22%of the exam
Questions 16–20
- 16
A new hire joins the threat intelligence team. Their responsibilities include updating threat intel feeds and viewing reports, but they should NOT be able to modify detection rules or manage users. Which role assignment best follows the principle of least privilege?
Select an answer first - 17
A company wants to enforce a password policy that requires users to change their passwords every 60 days and prevents reuse of the last 5 passwords. Where should the administrator configure this in XSIAM?
Select an answer first - 18
A security operations center (SOC) manager needs to grant a new analyst access to XSIAM so they can view and investigate alerts, but they must NOT be able to modify detection rules or manage user accounts. The analyst should only see data from the 'Finance' business unit. What is the most appropriate way to configure this access?
Select an answer first - 19
What happens when a permission is overridden for a specific user in XSIAM?
Select an answer first - 20
Which of the following is an example of an audit log entry in XSIAM?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “XSIAM-ENGINEER” is a trademark of its owner, used for identification only.