A company has an ongoing initiative to monitor and control IT-sanctioned SaaS applications. To be successful, it will require configuration of decryption policies, along with data filtering and URL Filtering Profiles used in Security policies. Based on the need to decrypt SaaS applications, which two steps are appropriate to ensure success? (Choose two.)
Which configurations on hosts are supported for detection by HIP?
Which Prisma Access operations are the administrator responsible for?
Which two components of a Security policy, when configured, allow third-party contractors access to internal applications outside business hours? (Choose two.)
Which set of attributes is used by IoT Security to identify and classify appliances on a network when determining Device-ID?
A network security engineer wants to forward Strata Logging Service data to tools used by the Security Operations Center (SOC) for further investigation. In which best practice step of Palo Alto Networks Zero Trust does this fit?
Which action optimizes user experience across a segmented network architecture and implements the most effective method to maintain secure connectivity between branch and campus locations?
An administrator wants to implement additional Cloud-Delivered Security Services (CDSS) on a data center NGFW that already has one enabled. What benefit does the NGFW’s single-pass parallel processing (SP3) architecture provide?
Which two SSH Proxy decryption profile settings should be configured to enhance the company’s security posture? (Choose two.)
What must be configured to successfully onboard a Prisma Access remote network using Strata Cloud Manager (SCM)?
TESTED 28 Jun 2026