This quiz engine has be developed by CyberArk Engineers who have PASSED CyberArk's CAU302 (v10) certification exam. Real questions from the CyberArk CAU302 certification exam are developed into this quiz engine so you will be well prepared for the official CyberArk CAU302: Defender + Sentry certification exam.
Each quiz attempt includes 80 questions, drawing from 230+ questions in the quiz engine, giving you 180 minutes to complete just like the official certification exam.
With OVER 230 questions in the quiz engine, this is the MOST comprehensive quiz to prepare you for CyberArk's CAU302 Defender + Sentry certification exam. You can Read moretake this quiz an UNLIMITED number of times, in order to help better prepare you for the official CyberArk CAU302: Defender + Sentry certification exam hosted by Pearson VUE.
After each attempt of this quiz you will be able to review your results, and many of the questions provide explanations for the correct answer making you feel as though you are being taught by a certified CyberArk instructor.
If you prefer to first attempt the FREE sample quiz, please click here.
To improve performance by reducing CPM workload.
To prevent accidental use of a policy in the wrong safe.
To allow users to access only the passwords they should be able to access.
To enforce Least Privilege in CyberArk.
Vault Users
Vault Groups
LDAP Users
LDAP Groups
The PSM software must be installed on the target server.
PSM must be enabled in the Master Policy (either directly, or through exception).
PSMConnect must be added as a local user on the target server.
RDP must be enabled on the target server.
PVWAMonitor
PVWAUsers
Auditors
Vault Admins
True
False
Rate this question:
Ignore the logon account and attempt to log in as root.
Prompt the end user with a dialog box asking for the login account to use.
Log in first with the logon account, then run the su command to log in as root using the password in the vault.
None of these.
PSM connections to target devices that are not managed by CyberArk.
Session Recording.
Real-time live session monitoring.
PSM connections from a terminal without the need to login to the PVWA.
1
2
3
4
Safes
Platforms
Policies
Accounts
PAR Agent
PrivateArk Server Central Administration
Edit DBParm.ini in a text editor
Setup.exe
Rate this question:
Logon must be originated from the console of the Vault server or an EmergencyStation defined in DBParm.ini
User must provide the correct master password
Logon requires the Recovery Private Key to be accessible to the vault
Logon must satisfy a challenge response request
The vault will not allow this situation to occur.
Only those permissions that exist on the group added to the safe first.
Only those permissions that exist in all groups to which the user belongs.
The cumulative permissions of all the groups to which that user belongs.
True
False
Dual Control
Exclusive Passwords
Ticketing Integration
Custom Connection Components
Password Complexity Rules
One Time Passwords
Password Reconciliation
Required Properties
Password Aging Rules
TRUE.
FALSE. Because the user can also enter credentials manually using Secure Connect.
FALSE. Because if credentials are not stored in the vault, the PSM will log into the target device as PSMConnect.
FALSE. Because if credentials are not stored in the vault, the PSM will prompt for credentials.
It determines how far in advance audit data is collected for reports.
It instructs the CPM to initiate the password change process X number of days before expiration.
It instructs that AIM Provider to ‘skip the cache’ during the defined time period.
It alerts users of upcoming password changes x number of days before expiration.
Rate this question:
The entire vault.
Network Areas
Safes
Individual Accounts
True
False
True
False
Privileged Account Compliance Status
Activity Log
Privileged Accounts Inventory
Applications Inventory
Privileged Accounts Inventory
Applications Inventory
Safes List
Privileged Accounts Compliance Status
True
False
True
False
True
False
True
False
True
False
Privileged Account Inventory
Privileged Accounts Compliance Status
Entitlement Report
Activity Log
True
False
Rate this question:
True
False
Rate this question:
Discovery and Audit (DNA)
Auto Detection (AD)
Export Vault Data (EVD)
On Demand Privileges Manager (OPM)
Accounts Discovery
Password Expiration Time
Enabling and Disabling of the Connection Through the PSM
Password Complexity
The use of “One-Time-Passwords”
Create an exception to the Master Policy to exclude the group from the work-flow process.
Edit the master policy rule and modify the advanced ‘Access safe without approval’ rule to include the group.
On the safe in which the account is stored grant the group the ‘Access safe with audit’ authorization.
On the safe in which the account is stored grant the group the ‘Access safe without confirmation’ authorization.
Configure the Provider to change the password to match the Vault’s Password.
Associate a reconcile account and configure the platform to reconcile automatically.
Associate a logon account and configure the platform to reconcile automatically.
Run the correct auto detection process to rediscover the password.
True
False
As many OUs as you wish.
Up to three OUs.
Only one OU.
A number of OUs determined by the OUstoScan setting under the Account Feed section in the Administration tab.
True
False
To control how often the CPM looks for System Initiated CPM work.
To control how often the CPM looks for User Initiated CPM work.
To control how long the CPM rests between password changes.
To control the maximum amount of time the CPM will wait for a password change to complete.
Rate this question:
You must specify an existing Safe where the account will be stored when it is on-boarded to the Vault.
You can specify the name of a new safe that will be created where the account will be stored when it is on-boarded to the Vault.
You can specify the name of a new Platform that will be created and associated with the account.
Any account that is on-boarded can be automatically reconciled regardless of the platform it is associated with.
True
False
True
False
True
False
True
False
True
False
Use accounts
List accounts
Access Safe without Authorization
Retrieve Accounts
Authorize Password Requests
Use accounts
List accounts
Access Safe without Authorization
Retrieve Accounts
Authorize Password Requests
Use accounts
List accounts
Access Safe without Authorization
Retrieve Accounts
Authorize Password Requests
To control how often the CPM looks for System Initiated CPM work.
To control how often the CPM looks for User Initiated CPM work.
To control how long the CPM rests between password changes.
To control the maximum amount of time the CPM will wait for a password change to complete.
True
False
True
False
Rate this question:
True
False
Quiz Review Timeline +
Our quizzes are rigorously reviewed, monitored and continuously updated by our expert board to maintain accuracy, relevance, and timeliness.
Related Topics
Recent Quizzes
Featured Quizzes
Wait!
Here's an interesting quiz for you.