nerdexam
Palo_Alto_NetworksPalo_Alto_Networks

PCCSE · Question #17

PCCSE Question #17: Real Exam Question with Answer & Explanation

The correct answer is C: Set the Alert Disposition to Conservative. https://docs.paloaltonetworks.com/prisma/prisma-cloud/prisma-cloud-admin/manage-prisma- cloud-administrators/define-prisma-cloud-enterprise-settings

Cloud Network Security

Question

The Unusual protocol activity (Internal) network anomaly is generating too many alerts. An administrator has been asked to tune it to the option that will generate the least number of events without disabling it entirely. Which strategy should the administrator use to achieve this goal?

Options

  • AChange the Training Threshold to Low
  • BDisable the policy
  • CSet the Alert Disposition to Conservative
  • DSet Alert Disposition to Aggressive

Explanation

https://docs.paloaltonetworks.com/prisma/prisma-cloud/prisma-cloud-admin/manage-prisma- cloud-administrators/define-prisma-cloud-enterprise-settings

Topics

#Network Anomaly Detection#Alert Tuning#Security Policy Configuration#Network Security Monitoring

Community Discussion

No community discussion yet for this question.

Full PCCSE PracticeBrowse All PCCSE Questions