Palo Alto Networks Systems Engineer Professional - Cortex - PSE-Cortex-Pro-24 Exam Practice Test

Which task setting allows context output to a specific key?
Correct Answer: D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
What are two reasons incident investigation is needed in Cortex XDR? (Choose two.)
Correct Answer: C,D
Which aspect of Cortex Xpanse allows for visibility over remote workforce risks?
Correct Answer: C
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
Cortex XSOAR has extracted a malicious Internet Protocol (IP) address involved in command-and-control (C2) traffic.
What is the best method to block this IP from communicating with endpoints without requiring a configuration change on the firewall?
Correct Answer: B
A customer has 2700 endpoints. There is currently concern about recent attacks in their industry and threat intelligence from a third-party subscription. In an attempt to be proactive, phishing simulations have been prioritized, but the customer wants to gain more visibility and remediation capabilities specific to their network traffic.
Which Cortex product provides these capabilities?
Correct Answer: B
An administrator has a critical group of systems running Windows XP SP3 that cannot be upgraded The administrator wants to evaluate the ability of Traps to protect these systems and the word processing applications running on them How should an administrator perform this evaluation?
Correct Answer: B
How does an "inline" auto-extract task affect playbook execution?
Correct Answer: B
Which solution profiles network behavior metadata, not payloads and files, allowing effective operation regardless of encrypted or unencrypted communication protocols, like HTTPS?
Correct Answer: D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
Which Cortex XDR Agent capability prevents loading malicious files from USB-connected removable equipment?
Correct Answer: C
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
Which Cortex XSIAM feature can be used to onboard data sources?
Correct Answer: D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
The prospect is deciding whether to go with a phishing or a ServiceNow use case as part of their POC We have integrations for both but a playbook for phishing only Which use case should be used for the POC?
Correct Answer: D
How can the required log ingestion license be determined when sizing a Cortex XSIAM deployment?
Correct Answer: B
Which description applies to the features of the Cortex platform as a holistic ecosystem?
Correct Answer: B
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).