Palo Alto Networks Certified Cloud Security Engineer (PCCSE)Cloud Workload Protection Platform (CWPP)Easy
A security administrator is setting up Prisma Cloud to monitor a serverless application deployed on AWS Lambda. They want to ensure that any unauthorized changes to the function's configuration or code are immediately detected. Which type of Defender is required for this specific use case?
- AServerless Defender
- BContainer Defender
- CHost Defender
- DApp-Embedded Defender
Show answer & explanationAnswer & explanation
Correct answer: A. Serverless Defender
Serverless Defender is specifically designed to protect serverless functions like AWS Lambda by monitoring their configuration, execution, and detecting deviations or threats within the serverless environment.
Why the other options are wrong
- B. Container Defender protects containerized workloads running on orchestrators.
- C. Host Defender protects virtual machines or bare-metal servers, not serverless functions.
- D. App-Embedded Defender is for protecting web applications and APIs, typically deployed within a container or VM, not for serverless functions themselves.
Prisma Cloud Serverless Defender
A specialized Defender designed to secure serverless functions, monitoring configuration, runtime behavior, and identifying threats unique to serverless environments.
- Protects AWS Lambda, Azure Functions, Google Cloud Functions.
- Monitors function configuration and execution.
- Detects runtime anomalies and policy violations.
Memory trick: Each cloud workload needs its own defensive shield.