nerdexam
Palo_Alto_NetworksPalo_Alto_Networks

PCNSE · Question #854

PCNSE Question #854: Real Exam Question with Answer & Explanation

Sign in or unlock PCNSE to reveal the answer and full explanation for question #854. The question stem and answer options stay visible for context.

Submitted by haru.x· Apr 18, 2026Operate

Question

A security engineer is informed that the vulnerability protection profile of their on-premises Palo Alto Networks firewall is triggering on a common Threat ID, and which has been determined to be a false positive. The engineer is asked to resolve the issue as soon as possible because it is causing an outage for a critical service. The engineer opens the vulnerability protection profile to add the exception, but the Threat ID is missing. Which action is the most operationally efficient for the security engineer to find and implement the exception?

Options

  • AReview high-severity system logs to identify why the threat is missing in "Vulnerability Profile
  • BSelect "Show all signatures" within the vulnerability protection profile under "Exceptions"
  • CReview traffic logs to add the exception from there
  • DOpen a support case

Unlock PCNSE to see the answer

You've previewed enough free PCNSE questions. Unlock PCNSE for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Vulnerability Protection#Exception Handling#False Positives#Operational Efficiency
Full PCNSE PracticeBrowse All PCNSE Questions