Spring Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: cramtick70

CPC-CDE-RECERT CyberArk CDE-CPC Recertification Questions and Answers

Questions 4

You are creating a PSM Load Balanced Virtual Server Configuration.

What are the default service ports / protocols used for RDS and the PSM Health Check service?

Options:

A.

RDP/389 HTTP/443

B.

RDP/3389 HTTPS/443

C UDP/53 HTTPS/389

C.

RDP/636 HTTPS/443

Buy Now
Questions 5

'What is a default authentication profile to access CyberArk Identity?

Options:

A.

Default New User Login Profile

B.

Default New Device Login Profile

C.

Default New Authenticator Profile

D.

Default New Password Profile

Buy Now
Questions 6

What must be done to configure the syslog server IP address(es) for SIEM integration? (Choose 2.)

Options:

A.

Submit a service request to CyberArk Support.

B.

Update the syslog server IP address through the Privilege Cloud Portal.

C.

Update the DBPARM.ini file with the correct syslog server IP address.

D.

Update the vault.ini file with the correct syslog server IP address.

E.

Configure the Secure Tunnel for SIEM integration.

Buy Now
Questions 7

The Secure Tunnel component of CyberArk Privilege Cloud connects to which services in the CyberArk Privilege Cloud? (Choose two.)

Options:

A.

https://console.privilegecloud.cyberark.cloud

B.

https://connector- .privilegecloud.cyberark.cloud

C.

https://backend-services.privilegecloud.cyberark.cloud

D.

https://telemetry.privilegecloud.cyberark.cloud

E.

https://update.privilegecloud.cyberark.cloud

Buy Now
Questions 8

On the CPM, you want to verify if DEP is disabled for the required executables According to best practices, which executables should be listed? (Choose 2.)

Options:

A.

Telnet.exe

B.

Plink.exe

C.

putty.exe

D.

mstsc.exe

Buy Now
Questions 9

On Privilege Cloud, what can you use to update users' Permissions on Safes? (Choose 2.)

Options:

A.

Privilege Cloud Portal

B.

PrivateArk Client

C.

REST API

D.

PACLI

E.

PTA

Buy Now
Questions 10

What is the correct CyberArk user to use when installing the Privilege Cloud Connector software?

Options:

A.

installeruser@

B.

Administrator

C.

_admin

D.

Installer

Buy Now
Questions 11

You want to add an additional maintenance user on the PSM for SSH. How can you accomplish this if InstallCyberArkSSHD is set to Integrated?

Options:

A.

Create a local user and add it to the PSMP_MaintenanceUsers group.

B.

Create a local user called proxymaster and add it to /etc/pam.d/auth-password.

C.

Create a local user and add it to the group configured for the parameter AllowGroups in the /etc/ssh/sshd_config file.

D.

Create a local user called psmpmng and add it to the PSMMaintenance group in /etc/pam.d/auth-password.

Buy Now
Questions 12

When installing PSM on a Windows 2019 Server, under which circumstances should the PSMConnect and PSMAdminConnect users be moved to the domain? (Choose two.)

Options:

A.

When RDS CAL Per User licenses are in use

B.

When the RDS session broker has a value > 1

C.

When you want to extend PSM sessions beyond one hour

D.

When you want to load balance the PSM installation

E.

When you need to enable PSM for Web Support

Buy Now
Questions 13

You want to change the default PSM recordings folder path on the Privilege Cloud Connector Arrange the steps to accomplish this in the correct sequence.

Options:

Buy Now
Questions 14

A CyberArk Privileged Cloud Shared Services customer asks you how to find recent failed login events for all users. Where can you do this without generating reports?

Options:

A.

Privileged Cloud Portal

B.

Identity Administration Portal

C both Identity Administration and Identity User Portals

C.

Identity User Portal

Buy Now
Questions 15

In addition to the Vault Admins and Auditors, what are the default map roles in the Privilege Cloud LDAP Directory mapping function for the Privilege Cloud Standard Services Model? (Choose two.)

Options:

A.

Safe Managers

B.

Safe Owners

C.

Privileged Cloud Users

D.

Users

Buy Now
Questions 16

You are designing a CyberArk Privilege Cloud environment for a new customer with three data center locations: one in London, one in New York, and one in Singapore. The customer wants to reduce the amount of traffic on their dedicated network links between each data center. Which design should you consider to manage their credentials?

Options:

A.

Deploy CPM connectors in each data center and configure region specific Safes.

B.

Deploy a CPM connector in London and increase the number of days between password changes.

C.

Deploy three CPM connectors in New York, and configure region specific Safes to send traffic equally to each connector CPM.

D.

Deploy CPM connectors in a single data center because the password management traffic is routed through the Privilege Cloud service.

Buy Now
Questions 17

When creating a new Safe, if you select “Save account versions for a period of days” within Version Retention settings, what is the default number of days that password versions are saved?

Options:

A.

7

B.

14

C.

30

D.

90

Buy Now
Questions 18

CyberArk User Neil is trying to connect to the Target Linux server 192.168.1.164 using a domain user ACME\linuxuser01 on domain acme.corp using PSM for SSH server

192.168.65.145.

What is the correct syntax?

Options:

A.

ssh neil@linuxuser01:acme.corp@192.168.1.164@192.168.65.145

B.

ssh neil@linuxuser01#acme.corp@192.168.1.164@192.168.65.145

C.

sshneil@linuxuser01@192.168.1.164@192.168.65.145

D.

ssh neil@linuxuser01@acme.corp@192.168.1.164@192.168.65.145

Buy Now
Questions 19

Which browser is supported for PSM Web Connectors developed using the CyberArk Plugin Generator Utility (PGU)?

Options:

A.

Internet Explorer

B.

Google Chrome

C.

Opera

D.

Firefox

Buy Now
Questions 20

What is a requirement for increasing the redundancy of PSMs?

Options:

A.

Use a load balancer.

B.

Set it by adding parameters to the basic_PSM.ini configuration file.

C.

CPM must be in all data centers.

D.

Install the Vault in an HA cluster.

Buy Now
Questions 21

In large-scale environments, it is important to enable the CPM to focus its search operations on specific Safes instead of scanning all Safes it sees in the Vault. How is this accomplished?

Options:

A.

Administration Options > CPM Settings

B.

AllowedSafes Parameter on each platform policy

C.

MaxConcurrentConnection parameter on each platform policy

D.

Administration > Options > CPM Scanner.

Buy Now
Questions 22

What is determined by the MaxConcurrentConnections setting within a platform?

Options:

A.

Maximum number of concurrent connections that can be opened between the CPM and the remote machines for the platform

B.

Maximum number of concurrent connections that can be between the PSM and the remote machines for the platform

C.

Maximum number of concurrent connections allowed for a specific account on the platform through the PSM

D.

Maximum number of concurrent connections to the Vault allowed for sending audit activities relating to the platform

Buy Now
Questions 23

Which statement describes the MFA integration capabilities of CyberArk Privilege Cloud (shared services model) compared to CyberArk PAM Self-Hosted?

Options:

A.

CyberArk Privilege Cloud and CyberArk PAM Self-Hosted offer identical MFA capabilities and integration methods.

B.

CyberArk Privilege Cloud leverages CyberArk Identity, while CyberArk PAM Self-Hosted needs additional integrations for MFA.

C.

CyberArk Privilege Cloud does not support MFA, while CyberArk PAM Self-Hosted does support a broad band of MFA integrations.

D.

CyberArk Privilege Cloud has limited MFA capabilities, whereas CyberArk PAM Self-Hosted offers an extensive range of MFA integration options.

Buy Now
Questions 24

You want to enforce Multi-Factor Authentication (MFA) for all Privilege Cloud Shared Services users and require them to set up an MFA factor. How should you accomplish this?

Options:

A.

Only allow SAML as the authentication method, enforce MFA on the SAML Identity Provider (IdP), and ensure users set up MFA accordingly on the IdP.

B.

Navigate to the Identity Administration Portal’s Policies section and configure the required authentication policies for CyberArk Identity.

C.

Navigate to the Identity Administration Portal’s Policies section and set the user security policy for Privilege Cloud to an authentication profile that only allows Multiple Authentication Mechanisms.

D.

Navigate to the Identity Administration Portal’s Policies section and configure the authentication policies for CyberArk Identity, adding a new authentication rule that applies with an “identity cookie” as a filter.

Buy Now
Questions 25

When calling the PSM Health Check Webservice to assess the state of a PSM node, which response code does a healthy node return?

Options:

A.

200 (OK)

B.

404 (OK)

C.

500 (OK)

D.

503 (OK)

Buy Now
Questions 26

When performing “In Domain” hardening of a PSM server, which steps are recommended? (Choose two.)

Options:

A.

Import CyberArk policy settings from the provided file into a new GPO.

B.

Apply advanced audit on the PSM server.

C.

Apply GPO to the CyberArk PSM servers.

D.

Import an INF file to the local machine.

E.

Configure AppLocker rules to block running unknown executables.

Buy Now
Questions 27

How can a platform be configured to work with load-balanced PSMs?

Options:

A.

Remove all entries from configured PSM Servers except for the ID of the PSMs with load balancing.

B.

Create a new PSM definition that targets the load balancer IP address and assign to the platform.

C.

Include details of the PSMs with load balancing in the Basic_psm.ini file on each PSM server.

D.

Use the Privilege Cloud Portal to update the Session Management settings for the platform in the Master Policy.

Buy Now
Questions 28

Before installing the Privilege Cloud Connector using Connector Management, which network rules should be in place?

Options:

A.

VaultConnectivity: Privilege Cloud backend Port 1858

TunnelConnectivity: Secure Tunnel Port 443

CustomerPortalConnectivity: Port 443

B.

VaultConnectivity: Privilege Cloud backend Port 1858

TunnelConnectivity: Secure Tunnel Port 5589

C.

TunnelConnectivity: Secure Tunnel Port 443

CustomerPortalConnectivity: Port 5589

D.

VaultConnectivity: Privilege Cloud backend Port 1858

TunnelConnectivity: Secure Tunnel Port 22

CustomerPortalConnectivity: Port 3389

Buy Now
Questions 29

How many assertions are supported by Privilege Cloud in a SAML integration?

Options:

A.

1

B.

2

C.

3

D.

Unlimited

Buy Now

Sentry |

Exam Code: CPC-CDE-RECERT
Exam Name: CyberArk CDE-CPC Recertification
Last Update: Feb 28, 2026
Questions: 99
CPC-CDE-RECERT pdf

CPC-CDE-RECERT PDF

$25.5  $84.99
CPC-CDE-RECERT Engine

CPC-CDE-RECERT Testing Engine

$30  $99.99
CPC-CDE-RECERT PDF + Engine

CPC-CDE-RECERT PDF + Testing Engine

$40.5  $134.99