Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free Paloalto Networks PCDRA Practice Exam with Questions & Answers | Set: 2

Questions 11

In Windows and macOS you need to prevent the Cortex XDR Agent from blocking execution of a file based on the digital signer. What is one way to add an exception for the singer?

Options:
A.

In the Restrictions Profile, add the file name and path to the Executable Files allow list.

B.

Create a new rule exception and use the singer as the characteristic.

C.

Add the signer to the allow list in the malware profile.

D.

Add the signer to the allow list under the action center page.

Paloalto Networks PCDRA Premium Access
Questions 12

Which two types of exception profiles you can create in Cortex XDR? (Choose two.)

Options:
A.

exception profiles that apply to specific endpoints

B.

agent exception profiles that apply to specific endpoints

C.

global exception profiles that apply to all endpoints

D.

role-based profiles that apply to specific endpoints

Questions 13

What is the outcome of creating and implementing an alert exclusion?

Options:
A.

The Cortex XDR agent will allow the process that was blocked to run on the endpoint.

B.

The Cortex XDR console will hide those alerts.

C.

The Cortex XDR agent will not create an alert for this event in the future.

D.

The Cortex XDR console will delete those alerts and block ingestion of them in the future.

Questions 14

What types of actions you can execute with live terminal session?

Options:
A.

Manage Network configurations, Quarantine Files, Run PowerShell scripts

B.

Manage Processes, Manage Files, Run Operating System Commands, Run Ruby Commands and Scripts

C.

Apply patches, Reboot System, send notification for end user, Run Python Commands and Scripts

D.

Manage Processes, Manage Files, Run Operating System Commands, Run Python Commands and Scripts

Questions 15

Which of the following is NOT a precanned script provided by Palo Alto Networks?

Options:
A.

delete_file

B.

quarantine_file

C.

process_kill_name

D.

list_directories

Questions 16

In Cortex XDR management console scheduled reports can be forwarded to which of the following applications/services?

Options:
A.

Salesforce

B.

Jira

C.

Service Now

D.

Slack

Questions 17

After scan, how does file quarantine function work on an endpoint?

Options:
A.

Quarantine takes ownership of the files and folders and prevents execution through access control.

B.

Quarantine disables the network adapters and locks down access preventing any communications with the endpoint.

C.

Quarantine removes a specific file from its location on a local or removable drive to a protected folder and prevents it from being executed.

D.

Quarantine prevents an endpoint from communicating with anything besides the listed exceptions in the agent profile and Cortex XDR.

Questions 18

What is the purpose of the Cortex Data Lake?

Options:
A.

a local storage facility where your logs and alert data can be aggregated

B.

a cloud-based storage facility where your firewall logs are stored

C.

the interface between firewalls and the Cortex XDR agents

D.

the workspace for your Cortex XDR agents to detonate potential malware files

Questions 19

What is the standard installation disk space recommended to install a Broker VM?

Options:
A.

1GB disk space

B.

2GB disk space

C.

512GB disk space

D.

256GB disk space

Questions 20

To stop a network-based attack, any interference with a portion of the attack pattern is enough to prevent it from succeeding. Which statement is correct regarding the Cortex XDR Analytics module?

Options:
A.

It does not interfere with any portion of the pattern on the endpoint.

B.

It interferes with the pattern as soon as it is observed by the firewall.

C.

It does not need to interfere with the any portion of the pattern to prevent the attack.

D.

It interferes with the pattern as soon as it is observed on the endpoint.

Exam Code: PCDRA
Certification Provider: Paloalto Networks
Exam Name: Palo Alto Networks Certified Detection and Remediation Analyst
Last Update: Jul 15, 2025
Questions: 91