CrowdStrike
IDP
Q1:
What does a modern Zero Trust security architecture offer compared to a traditional wall-and-moat (perimeter-based firewall) approach?
○
A
Applies machine learning to gauge the trustworthiness of any external entities○
B
Secures the perimeter of a network and does not allow access to any entities deemed ''zero trust''○
C
Issues trust certificates to internal entities and zero trust certificates to external entities○
D
Continuously authenticates entities regardless of origin
CrowdStrike
IDP
Q2:
Describe the difference between a Human account and a Programmatic account.
○
A
A human account is an Administrator○
B
A programmatic account is never authorized for multi-factor authentication○
C
A programmatic account is only used interactively○
D
A human account is often used interactively
CrowdStrike
IDP
Q3:
Under which CrowdStrike documentation category could you find Identity Protection API information?
○
A
Tools and Reference○
B
Falcon Management○
C
CrowdStrike Store○
D
CrowdStrike APIs
CrowdStrike
IDP
Q4:
Which of the following statements is NOT true as it relates to Identity Events, Detections, and Incidents?
○
A
Events related to an incident that occur after the incident is marked In Progress will create a new incident○
B
A detection can become an element of an incident that preceded it in time○
C
An event can become an element of a detection that preceded it in time○
D
Not all events are security events that become elements of detections
CrowdStrike
IDP
Q5:
Where would a Falcon administrator enable authentication traffic inspection (ATI) for Domain Controllers?
○
A
Identity configuration policies○
B
Identity management settings○
C
Identity detection configuration○
D
Identity protection settings