New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Palo Alto Networks PCDRA Exam - Topic 2 Question 7 Discussion

Actual exam question for Palo Alto Networks's PCDRA exam
Question #: 7
Topic #: 2
[All PCDRA Questions]

Cortex XDR Analytics can alert when detecting activity matching the following MITRE ATT&CKTM techniques.

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

0/2000 characters
Dominic
4 months ago
Not sure about this, but I feel like B could be a contender too.
upvoted 0 times
...
Elliot
4 months ago
I’m surprised they didn’t mention Lateral Movement in the options.
upvoted 0 times
...
Polly
4 months ago
Wait, how can it not include Privilege Escalation? Seems off.
upvoted 0 times
...
Sherrell
4 months ago
Totally agree, A makes the most sense here.
upvoted 0 times
...
Kenia
4 months ago
I think it's definitely A! Those are key techniques.
upvoted 0 times
...
Yuriko
5 months ago
I’m leaning towards option C, but I’m not confident about the impact technique being included in alerts.
upvoted 0 times
...
Buffy
5 months ago
I practiced a similar question, and I feel like lateral movement is often included in detection, so maybe option D?
upvoted 0 times
...
Tanja
5 months ago
I think it might be option A, since exfiltration and command and control are pretty common in alerts.
upvoted 0 times
...
Moon
5 months ago
I remember studying the MITRE ATT&CK techniques, but I'm not entirely sure which ones Cortex XDR specifically alerts on.
upvoted 0 times
...
Luz
5 months ago
Assuring the integrity of the messages seems like the most important objective here. We can't have the ICS receiving tampered power output commands.
upvoted 0 times
...
Roselle
5 months ago
I'm not entirely sure about the other options, but I remember TBL definitely includes some social aspect... maybe that's why I also lean towards A?
upvoted 0 times
...
Omer
5 months ago
Checking the last modified date on objects might give me some clues, but I'm not sure if that's a complete solution.
upvoted 0 times
...
Odette
5 months ago
Hmm, this seems like a tricky one. I'll need to think carefully about the best approach to manage the CPU efficiency cost.
upvoted 0 times
...
Rolf
5 months ago
I'm feeling pretty confident about this one. The Common Data Service connector is designed to work seamlessly with Dynamics 365, so that's clearly the best option for automating a process within that system. The other choices just don't seem as relevant to the specific requirements laid out in the question.
upvoted 0 times
...

Save Cancel