Black Friday Special Sale - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: mxmas70

Home > Paloalto Networks > PSE-Cortex Professional > PSE-Cortex

PSE-Cortex Palo Alto Networks System Engineer - Cortex Professional Question and Answers

Question # 4

Which two items are stitched to the Cortex XDR causality chain'' (Choose two)

A.

firewall alert

B.

SIEM alert

C.

full URL

D.

registry set value

Full Access
Question # 5

Which two types of lOCs are available for creation in Cortex XDR? (Choose two.)

A.

IP

B.

endpoint hostname

C.

domain

D.

registry entry

Full Access
Question # 6

The certificate used for decryption was installed as a trusted toot CA certificate to ensure communication between the Cortex XDR Agent and Cortex XDR Management Console. What action needs to be taken if the administrator determines the Cortex XDR Agents are not communicating with the Cortex XDR Management Console?

A.

add paloaltonetworks.com to the SSL Decryption Exclusion list

B.

enable SSL decryption

C.

disable SSL decryption

D.

reinstall the root CA certificate

Full Access
Question # 7

Which two formats are supported by Whitelist? (Choose two)

A.

Regex

B.

STIX

C.

CSV

D.

CIDR

Full Access
Question # 8

Which two entities can be created as a BIOC? (Choose two.)

A.

file

B.

registry

C.

event log

D.

alert log

Full Access
Question # 9

Which two filter operators are available in Cortex XDR? (Choose two.)

A.

not Contains

B.

!*

C.

=>

D.

< >

Full Access