Cybersecurity Questions
Practice questions for Cybersecurity topic in Palo Alto Networks Certified Cybersecurity Apprentice. 32 questions covering this domain.
A contractor with valid credentials copies confidential files to an unsanctioned location. Which classification best guides the initial exam-style ana...
A proof-of-concept uses a bug to gain unauthorized access. What should the learner call the proof-of-concept behavior?
A server is missing a critical patch, but no attack has occurred yet. What should the learner identify first?
An endpoint begins periodic outbound communications to receive attacker instructions after compromise. What should the responder suspect?
A defender is organizing reconnaissance, intrusion, control, and objective-focused activity into a sequence for training. Which blueprint concept appl...
A trainee is matching terms and sees a weakness in software or configuration that attackers could abuse. Which term fits?
A learner sees code or a method used to take advantage of a known weakness. Which term fits?
A user is tricked by a convincing message into revealing credentials. Which common attack type best matches?
Only one workstation shows suspicious process behavior, and the team needs host-local detection. Which system is the best fit?
A detection tool is installed on a single server to monitor local host activity. Which detection system best fits?
A team wants alerts for suspicious activity but understands the tool does not primarily block traffic. Which system category fits?
A sensor monitors traffic crossing a network segment for signs of intrusion. Which detection system best fits?
A security team wants visibility into suspicious traffic moving across a subnet, not just one endpoint. Which system is the best fit?
An analyst identifies malicious software designed to damage systems or support unauthorized activity. Which attack type is this?
A study group wants the term for the phases an attacker moves through from initial activity toward objectives. Which term fits?
A threat uses generated messages and automation to scale convincing lures. Which common attack type best matches the blueprint wording?
A manager says internal users should be trusted because they are inside the perimeter. What should an apprentice recommend instead?
Users keep opening malicious attachments even though perimeter controls exist. Which added prevention practice directly targets the human behavior?
A compromised host regularly checks in with attacker infrastructure for instructions. Which attack concept is this?
A company trains employees to recognize suspicious links and credential requests. Which prevention practice is this?
Sign in to see all 32 questions
Create a free account to browse all questions — completely free during our launch phase.