Lessons in stupidity - Prisma Access vs Prisma Cloud - Certification Journey
Urgent Help-Palo Alto Prisma Cloud
New to security and PAlo Alto products, trying to understand terms
Prisma Access Cloud / GlobalProtect - authentication to on-prem resources
What does QMasters' Managed Cyber Security Services (MCSS) include?
How is QMasters different from a typical MSSP?
What is QMasters' Critical SLA response time?
OK, I will try to summarise this as much as I can, but it will be somewhat of a read.
My company sent me to two Prisma Access courses, all good. I like the materials, platform is OK-ish, could be better, all good. Not here to talk about that.
Well, after I was done with courses, I was already in certification mode as my company needed to renew their status, so I was assigned a number of certs that I needed to attain at the beginning of this year. Before that I had a number of years of experience with most/all of the things they required, but never bothered with certs as I was done with those like 15 years ago, just didn't see the value in them. Well, jobs change and so now I was in a situation where I needed to get certified.
So I did the standard PCNSE and some other PA certs as well and while I was doing registrations at Pearson VUE, I foolishly also signed up for PCCSE thinking that it is related to the courses I took with Prisma Access in mind.
Imagine my surprise a month ago when I decided to go through the materials and discovered that those are two different platforms. I know, I know, I'm stupid, I should've checked that earlier and before I even signed up for the test, but I didn't.
Instead of cancelling the test and eating up the cost, I decided to go through the materials and hope for the best. There were some things there that were logical to me as I've dealt with systems that are related to Prisma Cloud, but in general, I was way out of my league. This was really a platform I haven't had any experience with.
So, today was the test. And I managed to pass, somehow. I followed logic in every single question, sometimes even if I didn't know what it was all about - just logically concluding what the answer would be - like, when you're talking about order of things, I just followed logic on how I would do it in other systems I was familiar with.
So, as of today, I am a PCCSE, but I will not be advertising this one as loud as other ones I attained. I really lucked out on this one and I think that there are definitely people who are way better than I am in these, so I will stay aside. It's nice to be able to say that I am smart enough to follow logic and complete an exam, but I'm definitely not going to claim that I am an expert in Prisma Cloud just because I passed an exam.
So we have been preparing vulnerability and compliance reports for EKS cluster. So we upgrade the Image versions ex: kube-proxy, ebs-csi-driver etc.
So the issue is when we upgrade the image versions. We are able to see the old version also. For example if we upgrade kube-proxy from 1.33 to 1.34. Prisma is showing vulnerabilities and compliance points for both of the versions.
Note: I scan Images manually using the scan option.
Prisma SaaS is same as aperture?
Prisma Public Cloud is same as redlock?
Prisma Access = Global Protect Cloud
Prisma SaaS I understand is for protecting cloud environment only?
Prisma Access is for non cloud devices, they form an ipsec tunnel and data flow through the prisma access cloud?
What is the use of Prisma Public Cloud?