CyberArk Defender - PAM v1.0

Page:    1 / 8   
Exam contains 113 questions

In a default CyberArk installation, which group must a user be a member of to view the "reports" page in PVWA?

  • A. PVWAMonitor
  • B. ReportUsers
  • C. PVWAReports
  • D. Operators


Answer : C

Your organization requires all passwords be rotated every 90 days.
Where can you set this requirement?

  • A. Master Policy
  • B. Safe Templates
  • C. PVWAConfig.xml
  • D. Platform Configuration


Answer : A

According to CyberArk, which issues most commonly cause installed components to display as disconnected in the System Health Dashboard? (Choose two.)

  • A. network instabilities/outages
  • B. vault license expiry
  • C. credential de-sync
  • D. browser compatibility issues
  • E. installed location file corruption


Answer : AB

Where can reconcile and/or logon accounts be linked to an account? (Choose two.)

  • A. account settings
  • B. platform settings
  • C. master policy
  • D. safe settings
  • E. service account settings


Answer : AE

You are running a "Privileged Accounts Inventory" Report through the Reports page in PVWA on a specific safe.
To show complete account inventory information, which permission/s are needed on that safe?

  • A. List Accounts, View Safe Members
  • B. Manage Safe Owners
  • C. List Accounts, Access Safe without confirmation
  • D. Manage Safe, View Audit


Answer : A

Which dependent accounts does the CPM support out-of-the-box? (Choose three.)

  • A. Solaris Configuration file
  • B. Windows Services
  • C. Windows Scheduled Tasks
  • D. Windows DCOM Applications
  • E. Windows Registry
  • F. Key Tab file


Answer : CEF

A password compliance audit found:
1) One-time password access of 20 domain accounts that are members of Domain Admins group in Active Directory are not being enforced.
2) All the sessions of connecting to domain controllers are not being recorded by CyberArk PSM.
What should you do to address these findings?

  • A. Edit the Master Policy and add two policy exceptions: enable "Enforce one-time password access", enable "Record and save session activity".
  • B. Edit safe properties and add two policy exceptions: enable "Enforce one-time password access", enable "Record and save session activity".
  • C. Edit CPM Settings and add two policy exceptions: enable "Enforce one-time password access", enable "Record and save session activity".
  • D. Contact the Windows Administrators and request them to add two policy exceptions at Active Directory Level: enable "Enforce one-time password access", enable "Record and save session activity".


Answer : D

If PTA is integrated with a supported SIEM solution, which detection becomes available?

  • A. unmanaged privileged account
  • B. privileged access to the Vault during irregular days
  • C. riskySPN
  • D. exposed credentials


Answer : C

Which change could CyberArk make to the REST API that could cause existing scripts to fail?

  • A. adding optional parameters in the request
  • B. adding additional REST methods
  • C. removing parameters
  • D. returning additional values in the response


Answer : C

You created a new platform by duplicating the out-of-box Linux through the SSH platform.
Without any change, which Text Recorder Type(s) will the new platform support? (Choose two.)

  • A. SSH Text Recorder
  • B. Universal Keystrokes Text Recorder
  • C. Events Text Recorder
  • D. SQL Text Recorder
  • E. Telnet Commands Text Recorder


Answer : AB

You are creating a Dual Control workflow for a team's safe.
Which safe permissions must you grant to the Approvers group?

  • A. List accounts, Authorize account request
  • B. Retrieve accounts, Access Safe without confirmation
  • C. Retrieve accounts, Authorize account request
  • D. List accounts, Unlock accounts


Answer : C

In addition to add accounts and update account contents, which additional permission on the safe is required to add a single account?

  • A. Upload Accounts Properties
  • B. Rename Accounts
  • C. Update Account Properties
  • D. Manage Safe


Answer : C

You want to give a newly-created group rights to review security events under the Security pane. You also want to be able to update the status of these events.
Where must you update the group to allow this?

  • A. in the PTAAuthorizationGroups parameter, found in Administration > Options > PTA
  • B. in the PTAAuthorizationGroups parameter, found in Administration > Options > General
  • C. in the SecurityEventsAuthorizationGroups parameter, found in Administration > Security > Options
  • D. in the SecurityEventsFeedAuthorizationGroups parameter, found in Administration > Options > General


Answer : C

What is required to manage loosely connected devices?

  • A. PSM for SSH
  • B. EPM
  • C. PSM
  • D. PTA


Answer : B

Your organization has a requirement to allow only one user to "check out passwords" and connect through the PSM securely.
What needs to be configured in the Master policy to ensure this will happen?

  • A. Enforce check-in/check-out exclusive access = active; Require privileged session monitoring and isolation = active
  • B. Enforce check-in/check-out exclusive access = inactive; Require privileged session monitoring and isolation = inactive
  • C. Enforce check-in/check-out exclusive access = inactive; Record and save session activity = active
  • D. Enforce check-in/check-out exclusive access = active; Record and save session activity = inactive


Answer : A

Page:    1 / 8   
Exam contains 113 questions

Talk to us!


Have any questions or issues ? Please dont hesitate to contact us

Certlibrary.com is owned by MBS Tech Limited: Room 1905 Nam Wo Hong Building, 148 Wing Lok Street, Sheung Wan, Hong Kong. Company registration number: 2310926
Certlibrary doesn't offer Real Microsoft Exam Questions. Certlibrary Materials do not contain actual questions and answers from Cisco's Certification Exams.
CFA Institute does not endorse, promote or warrant the accuracy or quality of Certlibrary. CFA® and Chartered Financial Analyst® are registered trademarks owned by CFA Institute.
Terms & Conditions | Privacy Policy