Skip to content

Identity Security Questions

Practice questions for Identity Security topic in Palo Alto Networks Certified Cybersecurity Apprentice. 36 questions covering this domain.

36 questions12 easy20 medium4 hard
Q1
medium

A privileged session is watched in real time and retained for audit. Which component fits?

Q2
easy

A user proves identity with only one authentication factor. Which component fits?

Q3
easy

A process manages identities from creation through changes and removal. Which component fits?

Q4
easy

A framework defines identities and associates permissions with users or groups. Which component fits?

Q5
medium

A system changes privileged passwords after use to limit credential reuse. Which component fits?

Q6
medium

A privileged user connects through a controlled gateway rather than directly exposing the target system. Which component best fits?

Q7
hard

A database administrator needs elevated access for a one-hour maintenance window, then access should disappear. Which control best fits?

Q8
medium

Administrative rights are granted only for an approved task and expire after completion. Which component fits?

Q9
medium

An admin receives only the rights needed to restart a service, not database deletion rights. Which principle fits?

Q10
easy

A user signs in once and accesses multiple applications with that authentication. Which component fits?

Q11
easy

A login requires more than one type of proof before access is granted. Which component fits?

Q12
medium

A recipient verifies that data was signed by the holder of a private key. Which component fits?

Q13
medium

An entity issues certificates that others rely on for trust. Which component fits?

Q14
hard

A CI/CD job needs a token to deploy, but storing it in a repository would expose it. Which control should be used?

Q15
medium

A key must be kept secret by its owner to decrypt or create signatures. Which component fits?

Q16
medium

A key is shared in a certificate so others can verify signatures or encrypt to the holder. Which component fits?

Q17
easy

Separate organizations or domains trust identity assertions between them. Which component fits?

Q18
medium

A certificate is trusted because each issuer links back to a trusted root. Which component fits?

Q19
medium

An application uses a token to call another service and the value must be protected. Which component fits?

Q20
medium

An automated process uses a key pair for secure shell access and the credential must be protected. Which component fits?

Sign in to see all 36 questions

Create a free account to browse all questions — completely free during our launch phase.