
Palo Alto NetworksCertified XSOAR Engineer
Domain 3Objective 4
3.4 Demonstrate Understanding of Sub-Playbook (inputs, Outputs, Looping) Configuration XSOAR-ENGINEER Practice Questions (Page 3)
Part of the Playbook Development domain, which accounts for 30% of the XSOAR-ENGINEER exam.
15questions here
3free pages
4concepts
30%of the exam
Questions 11–15
- 11
A parent playbook calls a sub-playbook that returns a list of findings. The analyst wants to merge these findings with findings from another sub-playbook call. Both sub-playbooks have looping enabled. How should the analyst combine the outputs?
Select an answer first - 12
A sub-playbook 'ProcessItem' takes a single 'item' input and returns a 'result'. The parent playbook has a list of items, but some items are invalid and should be skipped. The analyst wants to loop over the list but only invoke the sub-playbook for valid items. What is the best approach?
Select an answer first - 13
A parent playbook uses a looping sub-playbook to enrich multiple IPs. Each iteration returns a 'reputation' output. The analyst wants to create a single list of all reputations for a report. How should the analyst reference the accumulated outputs?
Select an answer first - 14
In Cortex XSOAR, when configuring a sub-playbook task, what is the purpose of defining an input parameter as 'Required'?
Select an answer first - 15
An analyst is configuring a sub-playbook task with looping enabled. The sub-playbook takes a list of IPs as a single input and returns a list of findings. The analyst wants to run the sub-playbook once per IP and collect all findings. What should the analyst set as the loop input?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to XSOAR-ENGINEER
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “XSOAR-ENGINEER” is a trademark of its owner, used for identification only.