New Year Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

Free and Premium Oracle 1z0-1104-22 Dumps Questions Answers

Page: 1 / 3
Total 92 questions

Oracle Cloud Infrastructure 2022 Security Professional Questions and Answers

Question 1

You create a new compartment, “apps,” to host some production apps and you create an apps_group and added users to it.

What would you do to ensure the users have access to the apps compartment?

Options:

A.

Add an IAM policy for the individual users to access the apps compartment.

B.

Add an IAM policy for apps_group granting access to the apps compartment.

C.

Add an lAM policy to attach tenancy to the apps group.

D.

No action is required.

Buy Now
Question 2

Which securityissues can be identified by Oracle Vulnerability Scanning Service? Select TWO correct answers

Options:

A.

Distributed Denial of Service (DDoS)

B.

Ports that are unintentionally left open can be a potential attack vector for cloud resources

C.

SQL Injection

D.

CISpublished Industry-standard benchmarks

Question 3

Which architecture is based on the principle of “never trust, always verify”?

Options:

A.

Federated identity

B.

Zero trust

C.

Fluidperimeter

D.

Defense in depth

Question 4

Select the component that encompasses the overall configuration of your WAF service on OCI.

Options:

A.

Protection rules

B.

Bot Management

C.

Web Application Firewall policy

D.

Origin

Question 5

Which statements are CORRECT about Multi-Factor Authentication in OCI ? Select TWO correct answers

Options:

A.

Members of the Administrators group can disable MFA for other users

B.

Users cannot enable MFA for themselves

C.

A user can registermultiple devices to use for MFA.

D.

Members of the Administrators group cannot enable MFA for another user

Question 6

Oracle Object Storage achieves data durability by which of the mechanisms ? Select TWO correct answers

Options:

A.

Service Gateway

B.

Redundant Storage across availability domains

C.

Redundant Array of IndependentDisks

D.

Object Versioning

Question 7

Which volume type contains the image used to boot a compute instance?

Options:

A.

Init 6 volume

B.

Boot volume

C.

Startup volume

D.

Block volume

Question 8

Which statement is true about origin management in WAF?

Statement A: Multiple origins can be defined.

Statement B: Only a single origin can be active fora WAF.

Options:

A.

Only statement B is true.

B.

Both the statements are false.

C.

Both the statements are true.

D.

Only statement A is true.

Question 9

Which challenge is generally the first level of bot mitigation, but not sufficient with more advanced bot tools?

Options:

A.

CAPTCHA challenge

B.

JavaScript challenge

C.

Device fingerprint challenge

D.

Human interaction challenge

Question 10

You are using a custom application with third-party APIs to manage application and data hosted in an Oracle Cloud Infrastructure(OCI) tenancy. Although your third-party APIs don't support OCI's signature-based authentication, you want them to communicate with OCI resources. Which authentication option must you use to ensure this?

Options:

A.

OCI username and Password

B.

API Signing Key

C.

SSH Key Pair with 2048-bit algorithm

D.

Auth Token

Question 11

Which type of firewalls are designed to protect against web application attacks, such as SQL injection and cross-site scripting?

Options:

A.

Stateful inspection firewall

B.

Web Application Firewall

C.

Incident firewall

D.

Packet filtering firewall

Question 12

your company has hired a consulting firm to audit your oracle cloud infrastructure activity and configuration you have created a set of users who will be performing the audit, you assigned these user to the orgauditgrp group. the auditor required the ability to see the configuration of all resources within tenant and you have agreed to exempt the dev compartment from the audit.

which IAM policy should be created to grant the orgauditgrp the ability to look at configuration for all resources except for those resources inside the dev compartment?

Options:

A.

allow group orgauditgrp to read all-resources in tenancy where target.compartment.name !=dev

B.

allow group orgauditgrp to read all-resources in compartment !=dev

C.

allow group orgauditgrp to inspect all-resources in tenancy where target compartment.name !=dev

D.

allow group orgauditgrp to inspect all-resources in compartment !=dev

Question 13

On which option do you set Oracle Cloud Infrastructure Budget?

Options:

A.

Compartments

B.

Instances

C.

Free-form tags

D.

Tenancy

Page: 1 / 3
Total 92 questions