CyberArk CAU201 CyberArk Defender Online Training
CyberArk CAU201 Online Training
The questions for CAU201 were last updated at Nov 19,2024.
- Exam Code: CAU201
- Exam Name: CyberArk Defender
- Certification Provider: CyberArk
- Latest update: Nov 19,2024
A Vault administrator have associated a logon account to one of their Unix root accounts in the vault.
When attempting to verify the root account’s password the Central Policy Manager (CPM) will:
- A . ignore the logon account and attempt to log in as root
- B . prompt the end user with a dialog box asking for the login account to use
- C . log in first with the logon account, then run the SU command to log in as root using the password in the Vault
- D . none of these
Which of the following Privileged Session Management solutions provide a detailed audit log of session activities?
- A . PSM (i.e., launching connections by clicking on the "Connect" button in the PVWA)
- B . PSM for Windows (previously known as RDP Proxy)
- C . PSM for SSH (previously known as PSM SSH Proxy)
- D . All of the above
The primary purpose of exclusive accounts is to ensure non-repudiation (Individual accountability).
- A . TRUE
- B . FALS
Which Master Policy Setting must be active in order to have an account checked-out by one user for a pre-determined amount of time?
- A . Require dual control password access Approval
- B . Enforce check-in/check-out exclusive access
- C . Enforce one-time password access
- D . Enforce check-in/check-out exclusive access & Enforce one-time password access
Which report shows the accounts that are accessible to each user?
- A . Activity report
- B . Entitlement report
- C . Privileged Accounts Compliance Status report
- D . Applications Inventory report
Which Automatic Remediation is configurable for a PTA detection of a “Suspected Credential Theft”?
- A . Add to Pending
- B . Rotate Credentials
- C . Reconcile Credentials
- D . Disable Account
DRAG DROP
Match each PTA alert category with the PTA sensors that collect the data for it.
Assuming a safe has been configured to be accessible during certain hours of the day, a Vault Admin may still access that safe outside of those hours.
- A . TRUE
- B . FALSE
Which type of automatic remediation can be performed by the PTA in case of a suspected credential theft security event?
- A . Password change
- B . Password reconciliation
- C . Session suspension
- D . Session termination