Free Oracle 1Z0-1070-20 Test Practice Test Questions Exam Dumps [Q22-Q43]

Share

Free Oracle 1Z0-1070-20 Test Practice Test Questions Exam Dumps

Prepare Top Oracle 1Z0-1070-20 Exam Audio Study Guide Practice Questions Edition


Oracle 1Z0-1070-20 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Describe typical use cases for Multi-Factor Authentication and Identity Federation
  • Configure Adaptive Security and MFA
Topic 2
  • Execute basic configurations on CASB Cloud Service including users and groups, dashboards, reports and policies
Topic 3
  • Understand how OCI implements Encryption and Key management
  • Configure Cloud to support hybrid security tooling
Topic 4
  • Describe OCI Shared Security Responsibility Module
  • Design for Security and Compliance in OCI
Topic 5
  • Describe key capabilities provided by Oracle Data Safe
  • Use EBS Asserter, Identity Bridge and Integrations
Topic 6
  • Identify the key capabilities provided by Identity Cloud Service, including the business value
  • Describe typical use cases for CASB Cloud Service
Topic 7
  • Identify the Cloud Security marketplace including trends, business drivers, and challenges
  • Configure Delegated Authentication
Topic 8
  • Describe features and benefits of Customer Isolation, Data Encryption, Security Control, Visibility, and Verifiably Secure Infrastructure
Topic 9
  • Describe typical use cases for OCI Vault (Keys and Secrets)
  • Configure Application Gateway
  • Monitor Security Risks
Topic 10
  • Describe service requirements and an understanding of the concepts
  • Create and use IAM Policies, Compartments, Policy Inheritance & IAM-Tags
Topic 11
  • Design Hybrid Cloud Architecture on OCI using FastConnect, IPSec VPN and Web Application Firewall (WAF)
  • Secure Identity Cloud Service
Topic 12
  • Configure & troubleshoot OCI network resources to secure cloud deployment, this includes VCN, Routing Tables, Security Rules, Gateways, Virtual Firewall
Topic 13
  • Oracle Cloud Infrastructure Security Fundamentals
  • Cloud Security Business Drivers and Challenges
Topic 14
  • Identify the key capabilities provided by CASB Cloud Service, including the business value
  • Describe typical use cases for Identity Cloud Service

 

NEW QUESTION 22
Which Identity SOC Cloud Service supports auto-access to the configurations in dynamic application environments?

  • A. Oracle Log Analytics Cloud Service
  • B. Oracle Identity Cloud Service
  • C. Oracle Orchestration Cloud Service
  • D. Oracle Configuration and Compliance Cloud Service

Answer: B

 

NEW QUESTION 23
Which option specifies the two major tasks involved in setting up most cloud applications to be monitored by Oracle CASB Cloud Service?

  • A. defining reports for the application and importing users for the application into Oracle CASB Cloud Service
  • B. creating policy alerts for the application and creating a tenant admin for the application in Oracle CASB Cloud Service
  • C. defining incidents to be monitored and risk events to be reported by Oracle CASB Cloud Service
  • D. creating a special account in the application and registering the application in Oracle CASB Cloud Service

Answer: D

 

NEW QUESTION 24
In your organization you are planning to implement Oracle Identity SOC as a cloud security solution.
What are two reasons for using an Identity SOC Solution? (Choose two.)

  • A. It provides multiple tools for data operations.
  • B. It incorporates the threat intelligence feeds from IP blacklists and known vulnerable databases only.
  • C. It provides the ability to have a hybrid enterprise application solution.
  • D. It uses adaptive ML-based analytics with identity.

Answer: B,D

 

NEW QUESTION 25
From the Oracle Management Cloud dashboard, you noticed a threat or suspicious browsing activity by a user to execute a brute force attack against an application.
Which two remedial actions will happen implicitly to mitigate some risk? (Choose two.)

  • A. User added to suspicious data access watchlist
  • B. Multi-factor Authentication (MFA) is imposed
  • C. Application policy gets created
  • D. Host AV update enforced

Answer: A,B

 

NEW QUESTION 26
You hire a third-party company to work in your Oracle Cloud environment. These partner employees work remotely and need to manage PaaS and IaaS instances in your environment. Your security officer requires that each partner employee provide a second verification factor on top of the traditional user name and password.
Which option do you configure in Oracle Identity Cloud Service for this to occur?

  • A. Identity provider policies
  • B. The bridge
  • C. Multi-Factor Authentication
  • D. Adaptive security

Answer: C

 

NEW QUESTION 27
Oracle Security Monitoring and Analytics is built on top of Oracle Log Analytics, and the procedures for adding and managing entities are identical.
How do you associate entities with existing log sources?

  • A. Create and set global properties.
  • B. Create a group in the administration console in Oracle Management Cloud.
  • C. Use the Oracle Log Analytics Entities page.
  • D. Edit property values for existing entries.

Answer: B

 

NEW QUESTION 28
One of the required tasks for setting up Oracle Security Monitoring and Analytics is "Add Log Analytics entities". After updating a file that contains the entity definition that you want to add, which omcli command needs to be run?

  • A. <AGENT_BASE_DIR>/agent_inst/bin/omcli add_entity agent FILENAME
  • B. <AGENT_BASE_DIR>/agent_inst/bin/omcli setproperty agent FILENAME
  • C. <AGENT_BASE_DIR>/agent_inst/bin/omcli register agent FILENAME
  • D. <AGENT_BASE_DIR>/omcli setproperty agent FILENAME

Answer: A

 

NEW QUESTION 29
Which is a major concern with regards to Line of Business (LOB) buyers when acquiring cloud services?

  • A. Line of Business (LOB) buyers were buying IT services without notifying their security team.
  • B. End users have no visibility over an organization's cloud strategy.
  • C. Line of Business (LOB) buyers do not have executive approval to acquire such services.
  • D. Customers are acquiring services that may not be in compliance with external regulations.

Answer: C

 

NEW QUESTION 30
Which three are the main goals of Oracle Identity Security Operations Center (SOC) Framework? (Choose three.)

  • A. a single pane of glass to manage security threats across their on-premises and cloud environments
  • B. fast and easy deployment of on-premises services through a centralized console
  • C. the ability to monitor heterogeneous environments
  • D. a suite of integrated solutions that work together, and not have to manage multiple solutions
  • E. the ability to integrate different services through open standards

Answer: A,B,D

 

NEW QUESTION 31
A customer has a Java application deployed to an on-premises WebLogic server. The application uses WebLogic authentication mechanism. The customer has access to the source code of this application so it can be built and redeployed if necessary.
Which is NOT an option to integrate with Oracle Identity Cloud Service?

  • A. Use WebLogic's federation mechanism to delegate authentication to Oracle Identity Cloud Service.
  • B. Use Secure Form Fill to automatically log the user in the application using credentials stored in Oracle Identity Cloud Service repository.
  • C. Use Oracle Identity Cloud Service's Java SDK.
  • D. Use WebLogic provider to validate user credentials in Oracle Identity Cloud Service repository.

Answer: D

 

NEW QUESTION 32
Which Oracle CASB Cloud Service feature could you use to quickly determine whether there is a concentration of security threats that is originating from a specific geographic area?

  • A. Reports
  • B. Access Map
  • C. Key Security Indicators
  • D. Risk Events

Answer: B

 

NEW QUESTION 33
You want to configure Oracle Identity Cloud Service so that any users who use an IP address that comes from a country where hacking is rampant are prevented from accessing Oracle Identity Cloud Service.
How would you accomplish this?

  • A. Define a network perimeter, assign it to a rule of a sign-on policy, and set the access for the rule to be denied.
  • B. Define a network perimeter.
  • C. Define a network perimeter and assign it to a rule of a sign-on policy.
  • D. Define a network perimeter, assign it to a rule of a sign-on policy, set the access for the rule to be denied, and define risk-related conditions in the rule associated with the user's location.

Answer: A

 

NEW QUESTION 34
Which action to resolve a suspicious event that appears in Risk Events is NOT supported by Oracle CASB Cloud Service?

  • A. export the risk event to Splunk for further processing
  • B. export the risk event to LogRythm for further processing
  • C. create an incident and resolve it in Oracle CASB Cloud Service
  • D. create an incident in Oracle CASB Cloud Service and export it to ServiceNow for further processing

Answer: B

 

NEW QUESTION 35
Which feature do you activate in Oracle Identity Cloud Service so that users can use their Microsoft Active Directory passwords to sign in to access resources that are protected by Oracle Identity Cloud Service?

  • A. Delegated Authentication
  • B. Identity Provider
  • C. The bridge
  • D. The Import utility

Answer: A

 

NEW QUESTION 36
Click to the exhibit.

Which three items fit on the high-level architecture diagram?

  • A. 1 (CASB Cloud Service), 2 (Security Monitoring and Analytics Cloud Service), 3 (Log Analytics Cloud Service)
  • B. 1 (Security Monitoring and Analytics Cloud Service), 2 (CASB Cloud Service), 3 (Log Analytics Cloud Service)
  • C. 1 (CASB Cloud Service), 2 (Log Analytics Cloud Service), 3 (Security Monitoring and Analytics Cloud Service)
  • D. 1 (Log Analytics Cloud Service), 2 (Database Security Vault), 3 (CASB Cloud Service)

Answer: B

 

NEW QUESTION 37
From which Threat Intelligence providers does Oracle CASB Cloud Service receive information?

  • A. Oracle CASB Cloud Service provides threat intelligence from digital element/Open Threat Exchange/Cymon.io.
  • B. Oracle CASB Cloud Service provides threat intelligence from digital element/Open Threat Exchange/MISP.
  • C. Oracle CASB Cloud Service provides threat intelligence from digital element/Tor/abuse.ch.
  • D. Oracle CASB Cloud Service provides threat intelligence from digital element/MISP/Cymon.io.

Answer: C

 

NEW QUESTION 38
Which two types of severity levels can alerts be generated in, when using Security Monitoring and Analytics (SMA) Cloud Service? (Choose two.)

  • A. Critical
  • B. Error
  • C. Warning
  • D. Debug
  • E. Blackout

Answer: A,C

 

NEW QUESTION 39
Which do you configure if you need to supplement the risk events that are automatically created in the Oracle CASB Cloud Service?

  • A. Configure Custom Risk Events
  • B. Configure Notifications
  • C. Configure Custom Policy
  • D. Configure Incidents

Answer: C

 

NEW QUESTION 40
Which two services are part of the Identity SOC that can be natively integrated with Oracle Human Capital Management (HCM)? (Choose two.)

  • A. Oracle Security Monitoring and Analytics Cloud Service
  • B. Oracle Identity Cloud Service
  • C. Oracle Orchestration Cloud Service
  • D. Oracle CASB Cloud Service

Answer: B,D

 

NEW QUESTION 41
A customer use case requires the second Factor Email during Oracle Identity Cloud Service Authentication process for a group of users only. The security administrator, signed in Oracle Identity Cloud Service console, enabled the email factor, edited the default sign-on policy and added a new sign-on rule. The new sign-on rule included the group name in the member of these groups conditions and prompt for additional factor every time. The administrator saved both the rule and the policy.
After executing this configuration, why does the email factor NOT appear to users from that group?

  • A. The security administrator needs to specify the list of users instead of the group name.
  • B. The Passcode Length and Validity Duration of the email factor don't have a default value.
  • C. The security administrator didn't change the order of the sign-on rules.
  • D. The default Sign-on Policy can't be changed.

Answer: B

 

NEW QUESTION 42
Which two are advantages of using Oracle Configuration and Compliance Cloud Service? (Choose two.)

  • A. It scores only for benchmark assessments without attaching SLA to the rule-sets.
  • B. It provides insights with highest severity and frequency to prioritize remediation.
  • C. It only uses Security Technical Implementation Guides (STIGs) for out-of-the-box automation for 100% compliance of finance systems.
  • D. It scores the benchmark assessment and attaches SLAs to rule-sets, and also uses the STIG.

Answer: A,D

 

NEW QUESTION 43
......

Go to 1Z0-1070-20 Questions - Try 1Z0-1070-20 dumps pdf : https://www.passleadervce.com/CASB-Cloud/reliable-1Z0-1070-20-exam-learning-guide.html