Palo Alto Networks Certified Cloud Security Engineer (PCCSE)Cloud Security Posture Management (CSPM)Easy

A security engineer is investigating a series of alerts in Prisma Cloud related to EC2 instances in an AWS environment. They need to quickly determine which of these instances have public IP addresses assigned and are exposed to the internet. Which feature within Prisma Cloud should the engineer primarily utilize for this task?

  1. AAttack Path Analysis
  2. BNetwork Explorer
  3. CCompliance Policies
  4. DResource Explorer
Show answer & explanation

Correct answer: D. Resource Explorer

The Resource Explorer provides a comprehensive, searchable inventory of all cloud assets, allowing engineers to filter and identify resources based on various attributes, including public IP address assignments and internet exposure.

Why the other options are wrong

  • A. Attack Path Analysis identifies potential routes attackers could take, which is different from a direct inventory search for public IPs.
  • B. Network Explorer visualizes network relationships and traffic flows, not a detailed inventory of individual resource attributes like public IPs.
  • C. Compliance Policies define rules for adherence but don't offer a direct, interactive asset inventory view for immediate investigation.

Prisma Cloud Resource Explorer

A feature in Prisma Cloud that provides a comprehensive, searchable inventory of all cloud resources across all connected cloud accounts. It allows users to query, filter, and inspect detailed configurations of individual assets.

  • Centralized inventory of cloud assets.
  • Enables detailed inspection of resource attributes.
  • Supports powerful RQL queries for filtering.

Memory trick: To explore specific resources, look to the explorer.

More Cloud Security Posture Management (CSPM) questions