PALOALTO · objective · 16% of the exam
Application Security — Cloud Security Engineer
The official PALOALTO documentation our Application Security practice questions are cited to. Review the primary sources, then practise.
Official references for this objective
-
Paloaltonetworks — Application Security - Palo Alto Networks
embedding security into DevOps workflows, supporting tools like Terraform ® , CloudFormation, Kubernetes ® , Dockerfiles, serverless frameworks and ARM templates
-
Paloaltonetworks — Application Security Posture Management | ASPM - Palo Alto Networks
Enforce targeted security guardrails that distinguish between new and existing issues and use context to prevent risks without slowing development.
-
Paloaltonetworks — Web Application Security - Palo Alto Networks
Inline and out-of-band deployment
-
Paloaltonetworks — Cortex Cloud Application Security - Palo Alto Networks
Backlogs rapidly grow as only ~10% of vulnerabilities in production are remediated each month.
-
Paloaltonetworks — Data and Cloud Application Security - Palo Alto Networks
They rely only on static databases of application signatures and reactive support requests for app discovery. This approach hinders their ability to identify or contain
-
Paloaltonetworks — Web Application and API Security | WAAS Solutions - Palo Alto Networks
Control unknown bots: Alert or block requests originating from bots with unknown intent, including headless browsers, command-line tools and good bot impersonators.