Free CAU201 Practice Test Questions and Answers (2026) | Cert Empire Practice Questions
Free preview: 20 questions.
CyberArk CAU201
Q: 1
When onboarding multiple accounts from the Pending Accounts list, which associated setting must
be the same across the selected accounts?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 2
PSM for Windows (previously known as “RDP Proxy”) supports connections to the following target
systems
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 3
How does the Vault administrator apply a new license file?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 4
For an account attached to a platform that requires Dual Control based on a Master Policy exception,
how would you configure a group of users to access a password without approval.
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 5
Which of the following options is not set in the Master Policy?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 6
Within the Vault each password is encrypted by:
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 7
A Vault administrator have associated a logon account to one of their Unix root accounts in the vault.
When attempting to verify the root account’s password the Central Policy Manager (CPM) will:
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 8
In order to connect to a target device through PSM, the account credentials used for the connection
must be stored in the vault?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 9
Which report shows the accounts that are accessible to each user?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 10
Assuming a safe has been configured to be accessible during certain hours of the day, a Vault Admin
may still access that safe outside of those hours.
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 11
Accounts Discovery allows secure connections to domain controllers.
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 12
A logon account can be specified in the platform settings.
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 13
A user with administrative privileges to the vault can only grant other users privileges that he himself
has.
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 14
Vault admins must manually add the auditors group to newly created safes so auditors will have
sufficient access to run reports.
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 15
It is possible to restrict the time of day, or day of week that a [b]verify[/b] process can occur
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 16
CyberArk recommends implementing object level access control on all Safes.
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 17
The vault supports Subnet Based Access Control.
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 18
DRAG DROP Match each key to its recommended storage location. 
Drag & Drop
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 19
DRAG DROP Match each PTA alert category with the PTA sensors that collect the data for it. 
Drag & Drop
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 20
DRAG DROP Match the Status of Service on a DR Vault to what is displayed when it is operating normally in Replication mode. 
Drag & Drop
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Question 1 of 20