Palo Alto Networks Certified Detection and Remediation Analyst - PCDRA Exam Practice Test

What is the Wildfire analysis file size limit for Windows PE files?
Correct Answer: B
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
Which of the following protection modules is checked first in the Cortex XDR Windows agent malware protection flow?
Correct Answer: B
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
Which statement best describes how Behavioral Threat Protection (BTP) works?
Correct Answer: A
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
What functionality of the Broker VM would you use to ingest third-party firewall logs to the Cortex Data Lake?
Correct Answer: A
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
In the deployment of which Broker VM applet are you required to install a strong cipher SHA256-based SSL certificate?
Correct Answer: B
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
Live Terminal uses which type of protocol to communicate with the agent on the endpoint?
Correct Answer: C
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
What license would be required for ingesting external logs from various vendors?
Correct Answer: B
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
What does the following output tell us?
Correct Answer: B
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).
In the Cortex XDR console, from which two pages are you able to manually perform the agent upgrade action?
(Choose two.)
Correct Answer: C,D
Explanation: Only visible for ExamsLabs members. You can sign-up / login (it's free).