Zscaler exam questions with answers // // // // //
URL filtering - CORRECT ANSWERS(S)✔✔a way of "blocking"
// // // // // // //
certain URLs from loading on a company network.
// // // // // // // //
Data Loss Prevention (DLP) - CORRECT ANSWERS(S)✔✔Data
// // // // // //
loss prevention (DLP) is a set of technologies and processes that
// // // // // // // // // // //
monitor and inspect data on a corporate network to prevent
// // // // // // // // // //
exfiltration of critical data as a result of cyberattacks, such as
// // // // // // // // // // //
phishing or malicious insider threats. Sensitive data such as
// // // // // // // // //
personally identifiable information (PII), protected health
// // // // // //
information (PHI), credit card numbers, and intellectual property
// // // // // // // //
is an organization's lifeblood, so it's critical to implement strong
// // // // // // // // // //
data security.
// //
Cloud Firewall - CORRECT ANSWERS(S)✔✔virtual software that
// // // // // //
functions by examining traffic into and out of the cloud.
// // // // // // // // // //
Cloud Access Security Broker (CASB) - CORRECT
// // // // // //
ANSWERS(S)✔✔A cloud access security broker (CASB) is a
// // // // // // // //
visibility and control point that secures cloud applications,
// // // // // // // //
delivering data protection and threat protection services to
// // // // // // // //
prevent leakage of sensitive data, stop malware and other
// // // // // // // // //
threats, discover and control shadow IT, and ensure compliance.
// // // // // // // // //
Sitting between cloud app users and cloud services, CASBs can
// // // // // // // // // //
,// monitor traffic and user activity, automatically block threats and
// // // // // // // //
// risky sharing, and enforce security policies such as
// // // // // // //
// authentication and alerting. // //
Cloud Workload Protection - CORRECT ANSWERS(S)✔✔Workload
// // // // //
protection is the aggregate of cloud security controls and
// // // // // // // // //
protocols that secure workload communications between
// // // // // //
environments. Interrelated to cloud workload security, workload
// // // // // // //
protection mitigates vulnerabilities caused by inherent security
// // // // // // //
risks such as misconfigurations. It's also a key element of cloud
// // // // // // // // // // //
security posture management (CSPM).
// // // //
Secure Web Gateway (SWG) - CORRECT ANSWERS(S)✔✔A secure
// // // // // // //
web gateway (SWG) is a security solution that prevents
// // // // // // // // //
unsecured internet traffic from entering an organization's
// // // // // // //
internal network. It's used by enterprises to protect employees
// // // // // // // // //
and users from accessing or being infected by malicious
// // // // // // // // //
websites and web traffic, internet-borne viruses, malware, and
// // // // // // // //
other cyberthreats. It also helps to ensure regulatory
// // // // // // // //
compliance.
//
Security Service Edge (SSE) - CORRECT ANSWERS(S)✔✔Security
// // // // // //
service edge (SSE), as defined by Gartner, is a convergence of
// // // // // // // // // // //
network security services delivered from a purpose-built cloud
// // // // // // // //
platform. SSE can be considered a subset of the secure access
// // // // // // // // // // //
service edge (SASE) framework with its architecture squarely
// // // // // // // //
focused on security services. SSE consists of three core services:
// // // // // // // // // //
, // a secure web gateway (SWG), a cloud access security broker
// // // // // // // // //
// (CASB), and a zero trust network access (ZTNA) framework.
// // // // // // // //
VPN (Virtual Private Network) - CORRECT ANSWERS(S)✔✔a
// // // // // //
mechanism for creating a secure connection between a
// // // // // // // //
computing device and a computer network, or between two
// // // // // // // // //
networks, using an insecure communication medium such as the
// // // // // // // // //
public Internet.
// //
Intrusion Prevention System (IPS) - CORRECT ANSWERS(S)✔✔is
// // // // // //
a network security tool (which can be a hardware device or
// // // // // // // // // // //
software) that continuously monitors a network for malicious
// // // // // // // //
activity and takes action to prevent it, including reporting,
// // // // // // // // //
blocking, or dropping it, when it does occur. It takes action itself
// // // // // // // // // // // //
to block the attempted intrusion or otherwise remediate the
// // // // // // // // //
incident.
//
Intrusion Detection System (IDS) - CORRECT ANSWERS(S)✔✔is a
// // // // // // //
monitoring system that detects suspicious activities and
// // // // // // //
generates alerts when they are detected
// // // // // //
Zero Trust - CORRECT ANSWERS(S)✔✔Zero trust is a framework
// // // // // // // //
for securing organizations in the cloud and mobile world that
// // // // // // // // // //
asserts that no user or application should be trusted by default.
// // // // // // // // // // //
Following a key zero trust principle, least-privileged access, trust
// // // // // // // // //
is established based on context (e.g., user identity and location,
// // // // // // // // // //
URL filtering - CORRECT ANSWERS(S)✔✔a way of "blocking"
// // // // // // //
certain URLs from loading on a company network.
// // // // // // // //
Data Loss Prevention (DLP) - CORRECT ANSWERS(S)✔✔Data
// // // // // //
loss prevention (DLP) is a set of technologies and processes that
// // // // // // // // // // //
monitor and inspect data on a corporate network to prevent
// // // // // // // // // //
exfiltration of critical data as a result of cyberattacks, such as
// // // // // // // // // // //
phishing or malicious insider threats. Sensitive data such as
// // // // // // // // //
personally identifiable information (PII), protected health
// // // // // //
information (PHI), credit card numbers, and intellectual property
// // // // // // // //
is an organization's lifeblood, so it's critical to implement strong
// // // // // // // // // //
data security.
// //
Cloud Firewall - CORRECT ANSWERS(S)✔✔virtual software that
// // // // // //
functions by examining traffic into and out of the cloud.
// // // // // // // // // //
Cloud Access Security Broker (CASB) - CORRECT
// // // // // //
ANSWERS(S)✔✔A cloud access security broker (CASB) is a
// // // // // // // //
visibility and control point that secures cloud applications,
// // // // // // // //
delivering data protection and threat protection services to
// // // // // // // //
prevent leakage of sensitive data, stop malware and other
// // // // // // // // //
threats, discover and control shadow IT, and ensure compliance.
// // // // // // // // //
Sitting between cloud app users and cloud services, CASBs can
// // // // // // // // // //
,// monitor traffic and user activity, automatically block threats and
// // // // // // // //
// risky sharing, and enforce security policies such as
// // // // // // //
// authentication and alerting. // //
Cloud Workload Protection - CORRECT ANSWERS(S)✔✔Workload
// // // // //
protection is the aggregate of cloud security controls and
// // // // // // // // //
protocols that secure workload communications between
// // // // // //
environments. Interrelated to cloud workload security, workload
// // // // // // //
protection mitigates vulnerabilities caused by inherent security
// // // // // // //
risks such as misconfigurations. It's also a key element of cloud
// // // // // // // // // // //
security posture management (CSPM).
// // // //
Secure Web Gateway (SWG) - CORRECT ANSWERS(S)✔✔A secure
// // // // // // //
web gateway (SWG) is a security solution that prevents
// // // // // // // // //
unsecured internet traffic from entering an organization's
// // // // // // //
internal network. It's used by enterprises to protect employees
// // // // // // // // //
and users from accessing or being infected by malicious
// // // // // // // // //
websites and web traffic, internet-borne viruses, malware, and
// // // // // // // //
other cyberthreats. It also helps to ensure regulatory
// // // // // // // //
compliance.
//
Security Service Edge (SSE) - CORRECT ANSWERS(S)✔✔Security
// // // // // //
service edge (SSE), as defined by Gartner, is a convergence of
// // // // // // // // // // //
network security services delivered from a purpose-built cloud
// // // // // // // //
platform. SSE can be considered a subset of the secure access
// // // // // // // // // // //
service edge (SASE) framework with its architecture squarely
// // // // // // // //
focused on security services. SSE consists of three core services:
// // // // // // // // // //
, // a secure web gateway (SWG), a cloud access security broker
// // // // // // // // //
// (CASB), and a zero trust network access (ZTNA) framework.
// // // // // // // //
VPN (Virtual Private Network) - CORRECT ANSWERS(S)✔✔a
// // // // // //
mechanism for creating a secure connection between a
// // // // // // // //
computing device and a computer network, or between two
// // // // // // // // //
networks, using an insecure communication medium such as the
// // // // // // // // //
public Internet.
// //
Intrusion Prevention System (IPS) - CORRECT ANSWERS(S)✔✔is
// // // // // //
a network security tool (which can be a hardware device or
// // // // // // // // // // //
software) that continuously monitors a network for malicious
// // // // // // // //
activity and takes action to prevent it, including reporting,
// // // // // // // // //
blocking, or dropping it, when it does occur. It takes action itself
// // // // // // // // // // // //
to block the attempted intrusion or otherwise remediate the
// // // // // // // // //
incident.
//
Intrusion Detection System (IDS) - CORRECT ANSWERS(S)✔✔is a
// // // // // // //
monitoring system that detects suspicious activities and
// // // // // // //
generates alerts when they are detected
// // // // // //
Zero Trust - CORRECT ANSWERS(S)✔✔Zero trust is a framework
// // // // // // // //
for securing organizations in the cloud and mobile world that
// // // // // // // // // //
asserts that no user or application should be trusted by default.
// // // // // // // // // // //
Following a key zero trust principle, least-privileged access, trust
// // // // // // // // //
is established based on context (e.g., user identity and location,
// // // // // // // // // //