Weekend Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: netbudy65

PCDRA Palo Alto Networks Certified Detection and Remediation Analyst Questions and Answers

Questions 4

While working the alerts involved in a Cortex XDR incident, an analyst has found that every alert in this incident requires anexclusion. What will the Cortex XDR console automatically do to this incident if all alerts contained have exclusions?

Options:

A.

mark the incident as Unresolved

B.

create a BIOC rule excluding this behavior

C.

create an exception to prevent future false positives

D.

mark the incident as Resolved – False Positive

Buy Now
Questions 5

LiveTerminal uses which type of protocol to communicate with the agent on the endpoint?

Options:

A.

NetBIOS over TCP

B.

WebSocket

C.

UDP and a random port

D.

TCP, over port 80

Buy Now
Questions 6

When using the “File Search and Destroy” feature, which of the following search hash type is supported?

Options:

A.

SHA256 hash of the file

B.

AES256 hash of the file

C.

MD5 hash of the file

D.

SHA1 hash of the file

Buy Now
Questions 7

Which statement is true for Application Exploits and Kernel Exploits?

Options:

A.

The ultimate goal of any exploit is to reach the application.

B.

Kernel exploits are easier to prevent then application exploits.

C.

The ultimate goal of any exploit is to reach the kernel.

D.

Application exploits leverage kernel vulnerability.

Buy Now
Questions 8

What are two purposes of “Respond to Malicious Causality Chains” in a Cortex XDR Windows Malware profile? (Choose two.)

Options:

A.

Automatically close the connections involved in malicious traffic.

B.

Automatically kill the processes involved in malicious activity.

C.

Automatically terminate the threads involved in malicious activity.

D.

Automaticallyblock the IP addresses involved in malicious traffic.

Buy Now
Questions 9

When creating a custom XQL query in a dashboard, how would a user save that XQL query to the Widget Library?

Options:

A.

Click the three dots on the widget andthen choose “Save” and this will link the query to the Widget Library.

B.

This isn’t supported, you have to exit the dashboard and go into the Widget Library first to create it.

C.

Click on “Save to Action Center” in the dashboard and you will be promptedto give the query a name and description.

D.

Click on “Save to Widget Library” in the dashboard and you will be prompted to give the query a name and description.

Buy Now
Exam Code: PCDRA
Exam Name: Palo Alto Networks Certified Detection and Remediation Analyst
Last Update: Oct 8, 2025
Questions: 91

PDF + Testing Engine

$134.99

Testing Engine

$99.99

PDF (Q&A)

$84.99