[Feb 14, 2024] CAU201 Dumps PDF and Test Engine Exam Questions - PremiumVCEDump
Verified CAU201 exam dumps Q&As with Correct 179 Questions and Answers
CyberArk Defender Certification is highly valued in the industry as it demonstrates an individual's proficiency in managing privileged accounts and securing sensitive data. It is an internationally recognized certification that can boost an individual's career prospects and open up new opportunities in the field of cybersecurity. CyberArk Defender certification is also an indication of an organization's commitment to cybersecurity, as having certified professionals on staff ensures that the organization's sensitive data is secure from cyber threats.
Understanding functional and technical aspects of CyberArk Account Onboarding
The following will be discussed in the CAU-201 exam dumps pdf:
- Maintain an appropriate chain of custody for Encryption Keys
- Describe how each component communicates with others or devices on network at a high level
- Onboard an account from the pending accounts list
- Setup a Windows Discovery
- Perform a bulk upload of accounts using Password Upload Utility or REST
- Describe tools that could be used to monitor CyberArk Application Health
- Use PrivateArk with Proficiency
- Setup a Unix Discovery
- Manually onboard an account
NEW QUESTION # 106
A new HTML5 Gateway has been deployed in your organization.
Where do you configure the PSM to use the HTML5 Gateway?
- A. Administration > Options > Privileged Session Management > Configured PSM Servers > Connection Details
- B. Administration > Options > Privileged Session Management > Add Configured PSM Gateway Servers
- C. Administration > Options > Privileged Session Management > Configured PSM Servers > Add PSM Gateway
- D. Administration > Options > Privileged Session Management > Configured PSM Servers > Connection Details > Add PSM Gateway
Answer: D
Explanation:
Reference:
%7CConfiguration%7C_____10
NEW QUESTION # 107
An auditor initiates a live monitoring session to PSM server to view an ongoing live session. When the auditor's machine makes an RDP connection the PSM server, which user will be used?
- A. Credentials stored in the Vault for the target machine
- B. PSMAdminConnect
- C. Shadowuser
- D. PSMConnect
Answer: B
NEW QUESTION # 108
Match the built-in Vault User with the correct definition.
Answer:
Explanation:
Reference:
https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Predefined-Users-and-Groups.htm?TocPath=Administration%7CUser%20Management%7C_____7
NEW QUESTION # 109
Which option in the Private Ark client is used to update users' Vault group memberships?
- A. Update > Authorizations tab
- B. Update > Member Of tab
- C. Update > Group tab
- D. Update > General tab
Answer: D
NEW QUESTION # 110
What is the name of the Platform parameter that controls how long a password will stay valid when One Time
Passwords are enabled via the Master Policy?
- A. Interval
- B. ImmediateInterval
- C. MinValidityPeriod
- D. Timeout
Answer: D
NEW QUESTION # 111
According to the DEFAULT Web Options settings, which group grants access to the REPORTS page?
- A. PVWAMonitor
- B. PVWAUsers
- C. Vault Admins
- D. Auditors
Answer: A
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/ ReportsInPVWA.htm
NEW QUESTION # 112
Which report provides a list of account stored in the vault.
- A. Entitlement Report
- B. Active Log
- C. Privileged Accounts Compliance Status
- D. Privileged Accounts Inventory
Answer: D
NEW QUESTION # 113
When managing SSH keys, the CPM stores the Public Key
- A. On the target server
- B. Nowhere because the public key can always be generated from the private key.
- C. In the Vault
- D. A & B
Answer: A
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/SSHKM/Managing%
20SSH%20Keys.htm
NEW QUESTION # 114
The System safe allows access to the Vault configuration files.
- A. FALSE
- B. TRUE
Answer: A
Explanation:
Explanation/Reference:
NEW QUESTION # 115
For a safe with Object Level Access enabled you can turn off Object Level Access Control when it no longer needed on the safe.
- A. FALSE
- B. TRUE
Answer: A
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Object-Level- Access-Control.htm
NEW QUESTION # 116
Platform settings are applied to______________.
- A. Safes
- B. Individual Accounts
- C. The entire vault.
- D. Network Areas
Answer: A
Explanation:
Explanation
Explanation/Reference: https://www.reddit.com/r/CyberARk/comments/avxnxz/safes_and_platform_association/
NEW QUESTION # 117
As long as you are a member of the Vault Admins group, you can grant any permission on any safe that you have access to.
- A. FALSE
- B. TRUE
Answer: A
NEW QUESTION # 118
Which utilities could you use to change debugging levels on the vault without having to restart the vault.
Select all that apply.
- A. Setup.exe
- B. Edit DBParm.ini in a text editor.
- C. PAR Agent
- D. PrivateArk Server Central Administration
Answer: C,D
Explanation:
Explanation
PAR-Private Ark Remote Control Agent allows you to perform several Vault admin tasks (without restarting the Vault) and view machine statistics.
NEW QUESTION # 119
What is the purpose of the HeadStartlnterval setting m a platform?
- A. It instructs the AIM Provider to 'skip the cache' during the defined time period
- B. It alerts users of upcoming password changesxnumber of days before expiration.
- C. It determines how far in advance audit data is collected tor reports
- D. It instructs the CPM to initiate the password change process X number of days before expiration.
Answer: A
NEW QUESTION # 120
Time of day or day of week restrictions on when password verifications can occur configured in
____________________.
- A. The Account Details
- B. The Master Policy
- C. The Safe settings
- D. The Platform settings
Answer: D
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Verifying-
Passwords.htm
NEW QUESTION # 121
It is possible to leverage DNA to provide discovery functions that are not available with auto-detection.
- A. FALS
- B. TRUE
Answer: B
NEW QUESTION # 122
To enable the Automatic response "Add to Pending" within PTA when unmanaged credentials are found, what are the minimum permissions required by PTAUser for the PasswordManager_pending safe?
- A. Add accounts (includes update properties), Update Account content, Update Account properties, View Audit
- B. List Accounts, Add accounts (includes update properties), Delete Accounts, Manage Safe
- C. View Accounts, Update Account content, Update Account properties, Access Safe without confirmation, Manage Safe, View Audit
- D. List Accounts, View Safe members, Add accounts (includes update properties), Update Account content, Update Account properties
Answer: D
NEW QUESTION # 123
Accounts Discovery allows secure connections to domain controllers.
- A. FALSE
- B. TRUE
Answer: A
Explanation:
Explanation/Reference:
NEW QUESTION # 124
The primary purpose of exclusive accounts is to ensure non-repudiation (individual accountability).
- A. FALSE
- B. TRUE
Answer: B
NEW QUESTION # 125
When a DR Vault Server becomes an active vault, it will automatically fail back to the original state once the Primary Vault comes back online.
- A. True; this is the default behavior
- B. False; this is not possible
- C. True, if the AllowFailback setting is set to "yes" in the padr.ini file
- D. True, if the AllowFailback setting is set to "yes" in the dbparm.ini file
Answer: B
NEW QUESTION # 126
When creating an onboarding rule, it will be executed upon .
- A. All accounts in the pending accounts list
- B. Any future accounts discovered by a discovery process
- C. Both "All accounts in the pending accounts list" and "Any future accounts discovered by a discovery process"
Answer: B
NEW QUESTION # 127
Which report provides a list of account stored in the vault.
- A. Entitlement Report
- B. Privileged Accounts Inventory
- C. Active Log
- D. Privileged Accounts Compliance Status
Answer: C
NEW QUESTION # 128
A new domain controller has been added to your domain. You need to ensure the CyberArk infrastructure can use the new domain controller for authentication.
Which locations must you update?
- A. on the Vault server in the certificate store and on the PVWA server in the certificate store
- B. in the Private Ark client under Tools > Administrative Tools > Directory Mapping
- C. on the Vault server in Windows\System32\Etc\Hosts and in the PVWA Application under Administration > LDAP Integration > Directories > Hosts
- D. on the Vault server in Windows\System32\Etc\Hosts and on the PVWA server in Windows\System32\Etc\Hosts
Answer: B
Explanation:
Reference:
%20user%20management%20using%20LDAP%7C_____2
NEW QUESTION # 129
In accordance with best practice, SSH access is denied for root accounts on UNIX/LINUX system. What is the BEST way to allow CPM to manage root accounts.
- A. Configure the CPM to allow SSH logins.
- B. Create a privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account as the Reconcile account of the targetserver's root account.
- C. Create a non-privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account as the Logon account of the target server's root account.
- D. Configure the Unix system to allow SSH logins.
Answer: C
NEW QUESTION # 130
......
CyberArk is a leading provider of privileged access security solutions that help organizations protect their most valuable assets. The CyberArk Defender certification exam, also known as CAU201, is designed for security professionals who want to demonstrate their expertise in CyberArk technology and its implementation. CAU201 exam is a rigorous test of skills, knowledge, and proficiency in CyberArk solutions and technologies.
CyberArk CAU201 Test Engine PDF - All Free Dumps: https://www.premiumvcedump.com/CyberArk/valid-CAU201-premium-vce-exam-dumps.html
Get New CAU201 Certification – Valid Exam Dumps Questions: https://drive.google.com/open?id=1hbZXA8SYJpIrM-8U46IXS90fYbHyfcD2