Skip to content

Cybersecurity Questions

Practice questions for Cybersecurity topic in Palo Alto Networks Certified Cybersecurity Practitioner. 38 questions covering this domain.

38 questions10 easy20 medium8 hard
Q1
medium

A team wants to filter malicious attachments and phishing messages before email reaches users. Which control is most aligned?

Q2
medium

A security team needs a program for identities, authentication, authorization, and access policies. Which technology area fits?

Q3
easy

A practitioner is reviewing the AAA framework. Which component verifies that a user is who they claim to be?

Q4
medium

An administrator must enforce device-level policy on company phones before they access email. Which technology should be used?

Q5
easy

A practitioner is reviewing the AAA framework. Which component determines what an authenticated user may access?

Q6
medium

A company wants to control corporate data inside mobile apps without managing every personal device setting. Which technology is the best fit?

Q7
medium

A SaaS application redirects a user to a trusted service to verify identity before returning an assertion. Which security technology is involved?

Q8
hard

A user passes MFA but still cannot open a privileged dashboard. Which AAA component should the practitioner investigate first?

Q9
hard

After a privileged session, compliance asks for a timeline of actions taken by the administrator. Which AAA component is most important?

Q10
easy

A practitioner is reviewing the AAA framework. Which component records user activity for auditing?

Q11
easy

Which framework does the PANW-CP blueprint name for categorizing techniques used by malicious actors?

Q12
medium

An analyst wants to map observed adversary behavior to a standard technique catalog named in the exam blueprint. Which framework should be used?

Q13
medium

An auditor asks for records showing who accessed a sensitive application and when. Which AAA component provides that evidence?

Q14
medium

A company uses cloud-hosted mailboxes and wants security controls integrated with that email environment. Which control fits best?

Q15
medium

A user signs in successfully but is blocked from an administrative function. Which AAA component made the access decision?

Q16
easy

Which security concept eliminates implicit trust and continuously evaluates access requests?

Q17
medium

A login workflow asks a user to prove identity with credentials and a second factor. Which AAA component is being performed first?

Q18
hard

A SOC wants a common language for describing the adversary techniques seen during an intrusion. Which framework named in the blueprint should they use...

Q19
hard

An access policy reduces trust during a live session because the endpoint becomes risky. Which Zero Trust principle explains the decision?

Q20
hard

A partner only needs one internal app, and the team wants to avoid network-wide access. Which principle should guide the design?

Sign in to see all 38 questions

Create a free account to browse all questions — completely free during our launch phase.