Skip to content

Cybersecurity Questions

Practice questions for Cybersecurity topic in Palo Alto Networks Certified Cybersecurity Apprentice. 32 questions covering this domain.

32 questions8 easy16 medium8 hard
Q1
hard

A contractor with valid credentials copies confidential files to an unsanctioned location. Which classification best guides the initial exam-style ana...

Q2
medium

A proof-of-concept uses a bug to gain unauthorized access. What should the learner call the proof-of-concept behavior?

Q3
medium

A server is missing a critical patch, but no attack has occurred yet. What should the learner identify first?

Q4
hard

An endpoint begins periodic outbound communications to receive attacker instructions after compromise. What should the responder suspect?

Q5
medium

A defender is organizing reconnaissance, intrusion, control, and objective-focused activity into a sequence for training. Which blueprint concept appl...

Q6
easy

A trainee is matching terms and sees a weakness in software or configuration that attackers could abuse. Which term fits?

Q7
easy

A learner sees code or a method used to take advantage of a known weakness. Which term fits?

Q8
medium

A user is tricked by a convincing message into revealing credentials. Which common attack type best matches?

Q9
hard

Only one workstation shows suspicious process behavior, and the team needs host-local detection. Which system is the best fit?

Q10
medium

A detection tool is installed on a single server to monitor local host activity. Which detection system best fits?

Q11
medium

A team wants alerts for suspicious activity but understands the tool does not primarily block traffic. Which system category fits?

Q12
medium

A sensor monitors traffic crossing a network segment for signs of intrusion. Which detection system best fits?

Q13
hard

A security team wants visibility into suspicious traffic moving across a subnet, not just one endpoint. Which system is the best fit?

Q14
easy

An analyst identifies malicious software designed to damage systems or support unauthorized activity. Which attack type is this?

Q15
easy

A study group wants the term for the phases an attacker moves through from initial activity toward objectives. Which term fits?

Q16
medium

A threat uses generated messages and automation to scale convincing lures. Which common attack type best matches the blueprint wording?

Q17
hard

A manager says internal users should be trusted because they are inside the perimeter. What should an apprentice recommend instead?

Q18
hard

Users keep opening malicious attachments even though perimeter controls exist. Which added prevention practice directly targets the human behavior?

Q19
easy

A compromised host regularly checks in with attacker infrastructure for instructions. Which attack concept is this?

Q20
medium

A company trains employees to recognize suspicious links and credential requests. Which prevention practice is this?

Sign in to see all 32 questions

Create a free account to browse all questions — completely free during our launch phase.