PAM-DEF Exam QuestionsBrowse all questions from this exam

PAM-DEF Exam - Question 96


Which PTA sensors are required to detect suspected credential theft? (Choose two.)

Show Answer
Correct Answer: ABD

To detect suspected credential theft, it is essential to monitor relevant logs that capture relevant activities regarding credential use. Logs and Vault Logs are critical in detecting such activities. Logs provide a broad spectrum of recorded activities that can indicate anomalies or unauthorized access attempts, while Vault Logs specifically monitor access and retrieval of credentials from the Vault, potentially flagging unauthorized or suspicious actions.

Discussion

4 comments
Sign in to comment
TakumiOptions: AB
Apr 12, 2023

The answer is A and B. https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/12.0/en/Content/PTA/What-Does-PTA-Detect.htm?tocpath=End%20User%7CSecurity%20Events%7C_____4

SwaminathanmOptions: AB
Jul 2, 2023

https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/12.0/en/Content/PTA/What-Does-PTA-Detect.htm?tocpath=End%20User%7CSecurity%20Events%7C_____4

acelloOptions: AB
Nov 20, 2023

It is AB

d_dragos95Options: BE
Jun 21, 2023

B -A user connects to a machine or a cloud service without first retrieving the required credentials from the Vault. E- Suspected credential theft occurred on a specific endpoint ( Endpoint Privileged Management). BE is correct.