An administrator needs to detect and alert on any activities performed by a root account.
Which policy type should be used?
Under which tactic is “Exploit Public-Facing Application” categorized in the ATT&CK framework?
Which IAM RQL query would correctly generate an output to view users who enabled console access with both access keys and passwords?
An administrator sees that a runtime audit has been generated for a container.
The audit message is:
“/bin/ls launched and is explicitly blocked in the runtime rule. Full command: ls -latr”
Which protection in the runtime rule would cause this audit?
What will happen when a Prisma Cloud Administrator has configured agentless scanning in an environment that also has Host and Container Defenders deployed?
When configuring SSO how many IdP providers can be enabled for all the cloud accounts monitored by Prisma Cloud?
What improves product operationalization by adding visibility into feature utilization and missed opportunities?
A Prisma Cloud Administrator needs to enable a Registry Scanning for a registry that stores Windows images. Which of the following statement is correct regarding this process?
One of the resources on the network has triggered an alert for a Default Config policy.
Given the following resource JSON snippet:
Which RQL detected the vulnerability?
A)
B)
C)
D)
A customer wants to monitor its Amazon Web Services (AWS) accounts via Prisma Cloud, but only needs the resource configuration to be monitored at present.
Which two pieces of information are needed to onboard this account? (Choose two.)