
Real CyberArk CAU201 Exam Dumps with Correct 114 Questions and Answers
Valid CAU201 Test Answers & CyberArk CAU201 Exam PDF
The benefit in Obtaining the CAU201 Exam Certification
The Defender Certification shows off skills and improves career for:
- IT Personnel whoever can afford 1st level aid for the products
- Whoever is able to open a support ticket with CyberArk 2nd level assistance
- IT professional who are working with the CyberArk PAS Solution on a regular basis
- IT Personnel whoever can make primary configuration settings to the system
For more info visit:
CyberArk CAU201 Exam Reference
NEW QUESTION 57
Which user(s) can access all passwords in the Vault?
- A. Any member of auditors
- B. Master
- C. Any member of Vault administrators
- D. Administrator
Answer: B
NEW QUESTION 58
What is the purpose of a linked account?
- A. To ensure that a particular collection of accounts all have the same password.
- B. To ensure a particular set of accounts all change at the same time.
- C. To connect the CPNI to a target system.
- D. To allow more than one account to work together as part of a password management process.
Answer: D
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Linked- Accounts.htm
NEW QUESTION 59
Which of the following PTA detections are included in the Core PAS offering?
- A. Suspected Credential Theft
- B. Over-Pass-The Hash
- C. Unmanaged Privileged Access
- D. Golden Ticket
Answer: C
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PTA/What-Does-PTA- Detect.htm
NEW QUESTION 60
The vault supports Role Based Access Control.
- A. FALSE
- B. TRUE
Answer: A
Explanation:
Reference https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Object-Level-Access-Control.htm
NEW QUESTION 61
What is the primary purpose of Dual Control?
- A. To force a 'collusion to commit' fraud ensuring no single actor may use a password without authorization.
- B. Non-repudiation (individual accountability)
- C. Reduced risk of credential theft
- D. More frequent password changes
Answer: A
NEW QUESTION 62
In accordance with best practice, SSH access is denied for root accounts on UNIXLINUX system.
What is the BEST way to allow CPM to manage root accounts?
- A. Create a privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account of the target server's root account.
- B. Create a non-privileged account on the target server. Allow this account the ability to SSH directly from the CPM machine. Configure this account as the Logon account of the target server's root account.
- C. Configure the CPM to allow SSH logins.
- D. Configure the Unix system to allow SSH logins.
Answer: B
NEW QUESTION 63
What is the purpose of the HeadStartlnterval setting m a platform?
- A. It determines how far in advance audit data is collected tor reports
- B. It alerts users of upcoming password changes x number of days before expiration.
- C. It instructs the CPM to initiate the password change process X number of days before expiration.
- D. It instructs the AIM Provider to 'skip the cache' during the defined time period
Answer: C
Explanation:
Explanation
The number of days before the password expires (according to the ExpirationPeriod parameter) that the CPM will initiate a password change process. This parameter is not relevant if the policy will be applied to a member of an account group.
NEW QUESTION 64
What is the maximum number of levels of authorization you can set up in Dual Control?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: C
NEW QUESTION 65
A user is receiving the error message "ITATS006E Station is suspended for User jsmith" when attempting to sign into the Password Vault Web Access (PVWA). Which utility would a Vault administrator use to correct this problem?
- A. cavaultmanager.exe
- B. PrivateArk
- C. createcredfile.exe
- D. PVWA
Answer: B
NEW QUESTION 66
Assuming a safe has been configured to be accessible during certain hours of the day, a Vault Admin may still access that safe outside of those hours.
- A. FALSE
- B. TRUE
Answer: A
Explanation:
Explanation/Reference: https://www.freshers360.com/wp-content/uploads/2019/05/Privileged-Account-Security- Implementation-Guide.pdf
NEW QUESTION 67
What is the purpose of a linked account?
- A. To ensure that a particular collection of accounts all have the same password.
- B. To ensure a particular set of accounts all change at the same time.
- C. To connect the CPNI to a target system.
- D. To allow more than one account to work together as part of a password management process.
Answer: D
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/PASIMP/Linked-
Accounts.htm
NEW QUESTION 68
All of your Unix root passwords are stored in the safe UnixRoot. Dual control is enabled for some of the accounts in that safe. The members of the AD group UnixAdmins need to be able to use the show, copy, and connect buttons on those passwords at any time without confirmation. The members of the AD group Operations Staff need to be able to use the show, copy and connect buttons on those passwords on an emergency basis, but only with the approval of a member of Operations Managers never need to be able to use the show, copy or connect buttons themselves.
Which safe permission do you need to grant Operations Staff? Check all that apply.
- A. Retrieve Accounts
- B. Authorize Password Requests
- C. Access Safe without Authorization
- D. Use Accounts
Answer: A,B,D
NEW QUESTION 69
Which CyberArk components products can be used to discover Windows Services or Scheduled Tasks that use privileged accounts? Select all that apply.
- A. Discovery and Audit (DNA)
- B. Accounts Discovery
- C. On Demand Privileges manager (OPM)
- D. Auto Detection (AD)
- E. Export Vault Data (EVD)
Answer: A,B
NEW QUESTION 70
A Logon Account can be specified in the Master Policy.
- A. TRUE
- B. FALS
Answer: B
NEW QUESTION 71
It a password is changed manually on a server, bypassing the CPM, how would you configure the account so that the CPM could resume management automatically?
- A. Associate a logon account and configure the platform to reconcile automatically
- B. Run the correct auto detection process to rediscover the password
- C. Configure the Provider to change the password to match the Vault's Password
- D. Associate a reconcile account and configure the platform to reconcile automatically
Answer: C
NEW QUESTION 72
When managing SSH keys, the CPM stored the Private Key
- A. Nowhere because the private key can always be generated from the public key.
- B. On the target server
- C. In the Vault
- D. A & B
Answer: C
Explanation:
Explanation/Reference: https://docs.cyberark.com/Product-Doc/OnlineHelp/PAS/Latest/en/Content/SSHKM/Managing%
20SSH%20Keys.htm
NEW QUESTION 73
Which one the following reports is NOT generated by using the PVWA?
- A. Accounts Inventory
- B. Convince Status
- C. Application Inventory
- D. Sales List
Answer: B
NEW QUESTION 74
It is possible to control the hours of the day during which a user may log into the vault.
- A. FALSE
- B. TRUE
Answer: A
NEW QUESTION 75
What is the name of the Platform parameters that controls how long a password will stay valid when One Time Passwords are enabled via the Master Policy?
- A. Min Validity Period
- B. Timeout
- C. Immediate Interval
- D. Interval
Answer: A
Explanation:
Min Validity Period -The number of minutes to wait from the last retrieval of the password until it is replaced. This gives the user a minimum period to be able to use the password before it is replaced. Use -1 to ignore this property. This parameter is also used to release exclusive accounts automatically Interval -" The number of minutes that the Central Policy Manager waits between running periodic searches for the platform. Note: It is recommended to leave the default value of 1440. If a change/verify policy has been configured, the Central Policy Manager will automatically align the periodic searches with the start of the defined timeframes."
NEW QUESTION 76
......
CAU201 Exam Questions and Valid PMP Dumps PDF: https://www.dumpsreview.com/CAU201-exam-dumps-review.html
CyberArk CAU201 Certification Real 2022 Mock Exam: https://drive.google.com/open?id=1vff2nrDpYTfqGFLQvS9U8XZIhw3ZAv22

