[Nov 30, 2021] Latest CASB Cloud 1Z0-1070-20 Actual Free Exam Questions [Q16-Q36]

Share

[Nov 30, 2021] Latest CASB Cloud 1Z0-1070-20 Actual Free Exam Questions

CASB Cloud 1Z0-1070-20 Dumps Updated Practice Test and 68 unique questions


Oracle 1Z0-1070-20 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Describe features and benefits of Customer Isolation, Data Encryption, Security Control, Visibility, and Verifiably Secure Infrastructure
Topic 2
  • Describe typical use cases for Multi-Factor Authentication and Identity Federation
  • Configure Adaptive Security and MFA
Topic 3
  • Describe service requirements and an understanding of the concepts
  • Create and use IAM Policies, Compartments, Policy Inheritance & IAM-Tags
Topic 4
  • Oracle Cloud Infrastructure Security Fundamentals
  • Cloud Security Business Drivers and Challenges
Topic 5
  • Design Hybrid Cloud Architecture on OCI using FastConnect, IPSec VPN and Web Application Firewall (WAF)
  • Secure Identity Cloud Service
Topic 6
  • Configure & troubleshoot OCI network resources to secure cloud deployment, this includes VCN, Routing Tables, Security Rules, Gateways, Virtual Firewall
Topic 7
  • Understand how OCI implements Encryption and Key management
  • Configure Cloud to support hybrid security tooling
Topic 8
  • Identify the key capabilities provided by Identity Cloud Service, including the business value
  • Describe typical use cases for CASB Cloud Service
Topic 9
  • Describe key capabilities provided by Oracle Data Safe
  • Use EBS Asserter, Identity Bridge and Integrations
Topic 10
  • Describe OCI Shared Security Responsibility Module
  • Design for Security and Compliance in OCI
Topic 11
  • Identify the key capabilities provided by CASB Cloud Service, including the business value
  • Describe typical use cases for Identity Cloud Service
Topic 12
  • Execute basic configurations on CASB Cloud Service including users and groups, dashboards, reports and policies
Topic 13
  • Describe typical use cases for OCI Vault (Keys and Secrets)
  • Configure Application Gateway
  • Monitor Security Risks
Topic 14
  • Identify the Cloud Security marketplace including trends, business drivers, and challenges
  • Configure Delegated Authentication

 

NEW QUESTION 16
What does Oracle CASB Cloud Service Access Map within Dashboard Summary show?

  • A. suspicious activity and threats that have transpired within Oracle CASB and across different geographical regions or the world
  • B. up to five Application Instances, including API calls showing the geographical regions where the instance was first implemented
  • C. mobile devices users who are actively using Oracle Identity Cloud Services in a manner that is against Oracle Corporate Usage Policy
  • D. a geography of login attempts within Oracle Identity Cloud Service and Oracle Enterprise Resource Planning Cloud, specifically the successful logins

Answer: A

 

NEW QUESTION 17
Which Oracle CASB Cloud Service feature could you use to quickly determine whether there is a concentration of security threats that is originating from a specific geographic area?

  • A. Reports
  • B. Access Map
  • C. Key Security Indicators
  • D. Risk Events

Answer: B

 

NEW QUESTION 18
Which Identity SOC Cloud Service supports auto-access to the configurations in dynamic application environments?

  • A. Oracle Log Analytics Cloud Service
  • B. Oracle Identity Cloud Service
  • C. Oracle Orchestration Cloud Service
  • D. Oracle Configuration and Compliance Cloud Service

Answer: B

 

NEW QUESTION 19
Which two services are part of the Identity SOC that can be natively integrated with Oracle Human Capital Management (HCM)? (Choose two.)

  • A. Oracle Security Monitoring and Analytics Cloud Service
  • B. Oracle Identity Cloud Service
  • C. Oracle Orchestration Cloud Service
  • D. Oracle CASB Cloud Service

Answer: B,D

 

NEW QUESTION 20
You hire a third-party company to work in your Oracle Cloud environment. These partner employees work remotely and need to manage PaaS and IaaS instances in your environment. Your security officer requires that each partner employee provide a second verification factor on top of the traditional user name and password.
Which option do you configure in Oracle Identity Cloud Service for this to occur?

  • A. Identity provider policies
  • B. The bridge
  • C. Multi-Factor Authentication
  • D. Adaptive security

Answer: C

 

NEW QUESTION 21
From the Oracle Management Cloud dashboard, you noticed a threat or suspicious browsing activity by a user to execute a brute force attack against an application.
Which two remedial actions will happen implicitly to mitigate some risk? (Choose two.)

  • A. User added to suspicious data access watchlist
  • B. Multi-factor Authentication (MFA) is imposed
  • C. Application policy gets created
  • D. Host AV update enforced

Answer: A,B

 

NEW QUESTION 22
Which do you configure if you need to supplement the risk events that are automatically created in the Oracle CASB Cloud Service?

  • A. Configure Custom Risk Events
  • B. Configure Notifications
  • C. Configure Custom Policy
  • D. Configure Incidents

Answer: C

 

NEW QUESTION 23
Can you customize which of your identity providers appear on the Sign In page when users are accessing Oracle Identity Cloud Service either locally or through a specific app?

  • A. Yes, by using identity provider policies.
  • B. Yes, by using sign-on policies.
  • C. No, because any identity provider that's set to appear in the Sign In page will be displayed.
  • D. No, because users should always sign in using their local authentication credentials.

Answer: A

 

NEW QUESTION 24
From which Threat Intelligence providers does Oracle CASB Cloud Service receive information?

  • A. Oracle CASB Cloud Service provides threat intelligence from digital element/Open Threat Exchange/Cymon.io.
  • B. Oracle CASB Cloud Service provides threat intelligence from digital element/Open Threat Exchange/MISP.
  • C. Oracle CASB Cloud Service provides threat intelligence from digital element/Tor/abuse.ch.
  • D. Oracle CASB Cloud Service provides threat intelligence from digital element/MISP/Cymon.io.

Answer: C

 

NEW QUESTION 25
Which top-level menu option would you go to in order to add an Oracle CASB Cloud Service user?

  • A. Configuration, Admin Management
  • B. Configuration, User Exclusion List
  • C. Jobs
  • D. Users

Answer: A

 

NEW QUESTION 26
Which two are advantages of using Oracle Configuration and Compliance Cloud Service? (Choose two.)

  • A. It scores only for benchmark assessments without attaching SLA to the rule-sets.
  • B. It provides insights with highest severity and frequency to prioritize remediation.
  • C. It only uses Security Technical Implementation Guides (STIGs) for out-of-the-box automation for 100% compliance of finance systems.
  • D. It scores the benchmark assessment and attaches SLAs to rule-sets, and also uses the STIG.

Answer: A,D

 

NEW QUESTION 27
How can you prevent a user from signing in to Oracle Identity Cloud Service if they are using a device that Oracle Identity Cloud Service does NOT recognize?

  • A. Configure the bridge
  • B. Configure identity provider policies
  • C. Configure Adaptive Security
  • D. Configure Multi-Factor Authentication

Answer: B

 

NEW QUESTION 28
Which is a major concern with regards to Line of Business (LOB) buyers when acquiring cloud services?

  • A. Line of Business (LOB) buyers were buying IT services without notifying their security team.
  • B. End users have no visibility over an organization's cloud strategy.
  • C. Line of Business (LOB) buyers do not have executive approval to acquire such services.
  • D. Customers are acquiring services that may not be in compliance with external regulations.

Answer: C

 

NEW QUESTION 29
Which two statements are true for Security Monitoring and Analytics Cloud Service? (Choose two.)

  • A. Cloud Agent for Security Monitoring and Analytics Cloud Service could be deployed on a Chrome operating system.
  • B. Cloud Agent for Security Monitoring and Analytics Cloud Service could be deployed on AIX.
  • C. Gateway for Security Monitoring and Analytics Cloud Service could not be deployed on a MAV operating system.
  • D. Gateway for Security Monitoring and Analytics Cloud Service could be deployed on AIX.

Answer: B,D

 

NEW QUESTION 30
Which four are the main pillars of the Oracle Identity Security Operations Center (SOC) solution? (Choose four.)

  • A. Cloud Access Security Broker (CASB)
  • B. IT Orchestration
  • C. Application Performance
  • D. User Entity Behavior and Analytics (UEBA)
  • E. Threat Intelligence
  • F. Security information and event management (SIEM)

Answer: A,C,D,F

 

NEW QUESTION 31
From the Oracle Management Cloud Security Monitoring and Analytics dashboard, you noticed a threat of key transfer and suspicious SMB communication activity by a user.
Which two remedial actions will be taken automatically to mitigate some risk? (Choose two.)

  • A. User added to suspicious data access watchlist
  • B. Targets added to file change watchlist
  • C. Multi-factor Authentication (MFA) is imposed
  • D. Host anti-virus (AV) update enforced

Answer: A,C

 

NEW QUESTION 32
Which is a top challenge for a Security Operations Center (SOC) Manager?

  • A. to identify threats proactively while maintaining organization and customer SLAs
  • B. to ensure network and systems uptime to meet organization and customer SLAs
  • C. to design and implement a software development life cycle program
  • D. to keep all systems in compliance within 30 days of new security regulations

Answer: A

 

NEW QUESTION 33
Which product needs to be deployed with Identity SOC?

  • A. Oracle Cloud Agent
  • B. Oracle CASB Cloud Service agent
  • C. Oracle Application Gateway
  • D. Oracle Management Cloud Gateway

Answer: B

 

NEW QUESTION 34
Which two steps are needed to integrate Oracle CASB Cloud Service with Oracle Identity Cloud Service?
(Choose two.)

  • A. In Oracle CASB Cloud Service navigate to Configuration and then to Identity Management providers.
    Select Oracle Identity Cloud Service and specify the Client ID/Client Secret.
  • B. Create an Oracle CASB Cloud Service application in Identity Cloud Service and collect the Client ID/Client Secret for the application created.
  • C. In Oracle CASB Cloud Service navigate to Configuration and then to Identity Management providers.
    Select Oracle Identity Cloud Service and specify the Instance name/Client ID/Client Secret and URL to the Provider.
  • D. Create a trusted application in Identity Cloud Service and collect the Client ID/Client Secret for the application created.

Answer: C,D

 

NEW QUESTION 35
You are the system administrator using the Management Cloud Dashboard to monitor your production environments. One of your global applications is yellow and upon further investigation on that application, it was identified that one of the users appears to be logging in to the application from multiple distant locations minutes apart. This appears to be a security threat.
Which remediation rule should be configured to address this type of incident?

  • A. Configure a notification to the user to have them reset their password.
  • B. Configure an Identity Cloud Service remediation rule to lock all the users accounts.
  • C. Disable all connectivity to the application from the suspicious region.
  • D. Configure an Identity Cloud Service remediation rule to lock user accounts that log into the application from different locations that occur within a minute of each attempt.

Answer: D

 

NEW QUESTION 36
......

Verified 1Z0-1070-20 dumps Q&As - 100% Pass from PassReview: https://www.passreview.com/1Z0-1070-20_exam-braindumps.html