Summer Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: exc65

An existing Palo Alto Networks SASE customer expresses that their security operations practice is having difficulty using the SASE data to help detect threats in their environment. They understand that parts of the Cortex portfolio could potentially help them and have reached out for guidance on moving forward.

Which two Cortex products are good recommendation for this customer? (Choose two.)

A.

Cortex XSOAR

B.

Cortex XDR

C.

Cortex

D.

Cortex XSIAM

Which playbook feature allows concurrent execution of tasks?

A.

parallel tasks

B.

automation tasks

C.

manual tasks

D.

conditional tasks

What is the recommended first step in planning a Cortex XDR deployment?

A.

Implement Cortex XDR across all endpoints without assessing architecture or assets

B.

Deploy agents across the entire environment for immediate protection.

C.

Deploy Cortex XDR on endpoints with the highest potential for attack.

D.

Conduct an assessment and identify critical assets and endpoint within the environment.

A Cortex Xpanse customer receives an email regarding an upcoming product update and wants to get more information on the new features.

In which resource can the customer access this information?

A.

Administrator Guide

B.

Release Notes

C.

Compatibility Matrix

D.

LIVEcommunitv

Which Cortex XDR capability prevents running malicious files from USB-connected removable equipment?

A.

Device customization

B.

Agent configuration

C.

Agent management

D.

Restrictions profile

In Cortex XDR Prevent, which three matching criteria can be used to dynamically group endpoints? (Choose three )

A.

alert root cause

B.

hostname

C.

domain/workgroup membership

D.

OS

E.

presence of Flash executable

What does DBot use to score an indicator that has multiple reputation scores?

A.

most severe score

B.

undefined score

C.

average score

D.

least severe score

What should be configured for a Cortex XSIAM customer who wants to automate the response to certain alerts?

A.

Playbook triggers

B.

Correlation rules

C.

Incident scoring

D.

Data model rules

Cortex XDR external data ingestion processes ingest data from which sources?

A.

windows event logs only

B.

syslogs only

C.

windows event logs, syslogs, and custom external sources

D.

windows event logs and syslogs only

Which two items are stitched to the Cortex XDR causality chain'' (Choose two)

A.

firewall alert

B.

SIEM alert

C.

full URL

D.

registry set value