nerdexam
Palo_Alto_NetworksPalo_Alto_Networks

PCNSA · Question #85

PCNSA Question #85: Real Exam Question with Answer & Explanation

The correct answer is D: It provides a percentage of adoption for each assessment area.. The Heatmap is one of two reports generated by Palo Alto Networks' Best Practice Assessment (BPA) tool. The Heatmap visually displays the percentage of best-practice adoption across multiple security assessment areas (e.g., Security Profiles, Zones, Decryption), color-coded from

Submitted by javi_es· Apr 18, 2026Manage

Question

Which statement is true regarding a Heatmap report?

Options

  • AWhen guided by authorized sales engineer, it helps determine the areas of greatest security risk
  • BIt runs only on firewalls.
  • CIt provides a set of questionnaires that help uncover security risk prevention gaps across all areas
  • DIt provides a percentage of adoption for each assessment area.

Explanation

The Heatmap is one of two reports generated by Palo Alto Networks' Best Practice Assessment (BPA) tool. The Heatmap visually displays the percentage of best-practice adoption across multiple security assessment areas (e.g., Security Profiles, Zones, Decryption), color-coded from red (low adoption) to green (high adoption). The other BPA report - the Prevention Posture Assessment (PPA) - is the questionnaire-based tool that uncovers security gaps (C). The Heatmap runs on Panorama or can be generated from firewall configs; it is not firewall-only (B).

Topics

#Heatmap report#Security assessment#Reporting#Best Practices

Community Discussion

No community discussion yet for this question.

Full PCNSA PracticeBrowse All PCNSA Questions