Palo Alto Networks Certified Cloud Security Engineer (PCCSE)Prisma Cloud PlatformEasy
A security engineer needs to retrieve a list of all active policies configured in their Prisma Cloud Enterprise tenant for an audit. They want to automate this process and integrate it into their existing compliance reporting pipeline. Which Prisma Cloud API endpoint category should the engineer focus on to achieve this?
- ARQL API
- BAlerts API
- CCompliance API
- DPolicies API
Show answer & explanationAnswer & explanation
Correct answer: D. Policies API
The Policies API is specifically designed for managing and retrieving information about policies configured within Prisma Cloud, making it the correct choice for automating the retrieval of active policies.
Why the other options are wrong
- A. The RQL API is used for running RQL queries against cloud resources, not for retrieving a list of configured policies.
- B. The Alerts API is used for managing security alerts, not for retrieving policy definitions.
- C. The Compliance API is typically used for compliance posture and violations, not for listing policy configurations themselves.
Prisma Cloud Policies API
A set of API endpoints within Prisma Cloud that allows programmatic interaction with policy definitions, including creation, modification, deletion, and retrieval of policy data.
- Enables automation of policy management tasks.
- Supports integration with CI/CD and compliance pipelines.
- Allows retrieval of policy details, including RQL and remediation actions.
Memory trick: To get 'policies', use the 'Policies' API.