Weekend Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

CyberArk CPC-SEN Dumps

Page: 1 / 4
Total 50 questions

CyberArk Sentry - Privilege Cloud Questions and Answers

Question 1

Which option correctly describes the authentication differences between CyberArk Privilege Cloud and CyberArk PAM Self-Hosted?

Options:

A.

CyberArk Privilege Cloud only provides a username and password authentication without third-party IdP integration; CyberArk PAM Self-Hosted uses traditional on-premises methods such as Windows and LDAP. but lacks modern protocols such as SAML or OIDC.

B.

CyberArk Privilege Cloud uses cloud-based methods, integrating with CyberArk Identity for MFA. and supports SAML and OIDC; CyberArk PAM Self-Hosted depends on on-premises methods such as RADIUS and LDAP, but can adopt SAML or OIDC with additional setups.

C.

CyberArk Privilege Cloud requires on-premises components for all authentication and does not support other cloud-based authentication protocols; CyberArk PAM Self-Hosted offers a wide array of methods, including support for SAML. OIDC. and other modern protocols, without needing on-premises components.

D.

Both use the same authentication methods.

Question 2

On Privilege Cloud, what can you use to update users' Permissions on Safes? (Choose 2.)

Options:

A.

Privilege Cloud Portal

B.

PrivateArk Client

C.

REST API

D.

PACLI

E.

PTA

Question 3

Following the installation of the PSM for SSH server, which additional tasks should be performed? (Choose 2.)

Options:

A.

Delete the user.cred file used during installation.

B.

Delete the vault.ini you used during installation.

C.

Delete the psmpparms file you used during installation.

D.

Package all installation log files for upload to CyberArk.

Question 4

You are planning to configure Multi-Factor Authentication (MFA) for your CyberArk Privilege Cloud Shared Service. What are the available authentication methods?

Options:

A.

LDAR RADIUS. SAML OpenID Connect (OIDC)

B.

Windows. PKI. RADIUS. CyberArk, LDAP. SAML. OpenID Connect (OIDC)

C.

Privilege Cloud Shared Services fully utilize CyberArk Identity and its MFA options.

D.

Only RADIUS can be used to achieve MFA across all components, such as PSM for RDP and PSM for SSH.

Question 5

Which statement is correct regarding the LDAP integration with CyberArk Privilege Cloud Standard?

Options:

A.

You must track the expiration date of the directory server certificate and contact CyberArk Support to renew it.

B.

LDAPS integration with Privilege Cloud requires StartTLS for secure and encrypted communication.

C.

For certificate trust to your directory server, only the Issuing CA certificate is required.

D.

The top-level domain entry of the directory must be unique in the chosen Privilege Cloud region.

Question 6

Your customer recently merged with a smaller organization. The customer's connector has no network connectivity to the smaller organization's infrastructure. You need to map LDAP users from both your customer and the smaller organization. How is this achieved?

Options:

A.

Create the required users in one directory and configure the Identity Connector to read that directory, as there can only be one Identity Connector.

B.

Create mappings for both directories from the original Identity Connector.

C.

Deploy Identity Connectors in the newly acquired infrastructure and create user mappings.

D.

Switch all users to SAML authentication as there can only be one Identity Connector.

Question 7

Arrange the steps to failover to the passive CPM in the correct sequence.

Options:

Question 8

Which statement best describes a PSM server's network requirements?

Options:

A.

It must reach the target system using its native protocols.

B.

It requires limited outbound connectivity to Ports 1858 and 443 only.

C.

It requires direct access to the internet.

D.

It requires broad inbound firewall rules and outbound traffic should be limited to Port 1858.

Question 9

Which browser is supported for PSM Web Connectors developed using the CyberArk Plugin Generator Utility (PGU)?

Options:

A.

Internet Explorer

B.

Google Chrome

C.

Opera

D.

Firefox

Question 10

Before the hardening process, your customer identified a PSM Universal Connector executable that will be required to run on the PSM. Which file should you update to allow this to run?

Options:

A.

PSMConfigureAppLocker.xml

B.

PSMHardening.xml

C.

PSMAppConfig.xml

D.

PSMConfigureHardening xml

Question 11

What is the correct CyberArk user to use when installing the Privilege Cloud Connector software?

Options:

A.

installeruser@

B.

Administrator

C.

_admin

D.

Installer

Question 12

In the directory lookup order, which directory service is always looked up first for the CyberArk Privilege Cloud solution?

Options:

A.

Active Directory

B.

LDAP

C.

Federated Directory

D.

CyberArk Cloud Directory

Question 13

You want to change the default PSM recordings folder path on the Privilege Cloud Connector Arrange the steps to accomplish this in the correct sequence.

Options:

Question 14

You plan to install Privilege Cloud Connectors on your AWS and Azure environments.

What is the maximum number of concurrent RDP/SSH sessions that each connector can handle for Large Implementations?

Options:

A.

1-10

B.

31-60

C.

100

D.

200

Question 15

During CPM hardening, which locally created users are granted Logon as a Service rights in the local group policy? (Choose 2.)

Options:

A.

PasswordManager

B.

PluginManagerUser

C.

ScannerUser

D.

PasswordManagerUser

E.

CPMServiceAccount

Page: 1 / 4
Total 50 questions