350-701 Dumps for Pass Guaranteed - Pass 350-701 Exam 2021
350-701 Exam Dumps - Try Best 350-701 Exam Questions from Training Expert Pass4Leader
Content Security – 10%
- Describing the capacity, benefits, and components of Cisco Umbrella;
- Comparing the capacity, benefits, and components of Cloud-based & local email as well as web solutions;
- Explaining web proxy authentication & identity, including transparent user identification;
- Implementing the traffic capture & redirection techniques;
- Configuring and verifying the email security features, such as antimalware filtering, block listing, SPAM filtering, DLP, and email encryption;
- Configuring and verifying the secure internet gateway as well as web security features, such as URL categorization, block listing, malware scanning, URL filtering, TLS decryption, and web application filtering;
- Configuring and verifying the email as well as web security deployment techniques to protect the remote & on-premises users (comprising outbound & inbound controls and policy management);
- Configuring and verifying web security controls located on Cisco Umbrella (including identities, destination lists, URL content settings, and reporting).
The Implementing and Operating Cisco Security Core Technologies (350-701 SCOR) exam is a prerequisite for obtaining the Cisco Certified Specialist – Security Core certification. It is also a part of the requirements for the CCNP Security and CCIE Security certificates. This qualifying test measures the candidates’ expertise in the implementation and operation of key security technologies, such as endpoint protection & detection, Cloud security, secure network access, network security, content security, visibility, and enforcements.
Cisco 350-701 SCOR: Exam Details
Typically, Cisco doesn’t reveal the details of its exams, and 350-701 SCOR is not an exception. This certification test is 120 minutes long and can contain various question types, which can be testlets, fill-in-the-blank, drag and drop, multiple choice (multiple answers), and multiple choice (single answer). As for the passing score, the vendor never publishes it for its exams as they are subject to change without any notice. Cisco 350-701 is offered to the students in the English and Japanese languages. It is available for $400. You can register for your session on the website of the Cisco testing partner – Pearson VUE.
There are different study approaches that the learners can choose to prepare for the Cisco 350-701 exam. They can enroll for the official instructor-led course offered by Cisco on its website. Implementing and Operating Cisco Security Core Technologies (SCOR) is a paid training course that is developed mainly for those in the IT sector who are already experienced in the security field.
NEW QUESTION 118
In which two ways does a system administrator send web traffic transparently to the Web Security Appliance? (Choose two.)
- A. reference a Proxy Auto Config file
- B. configure the proxy IP address in the web-browser settings
- C. use Web Cache Communication Protocol
- D. configure policy-based routing on the network infrastructure
- E. configure AD Group Policies to push proxy settings
Answer: C,D
NEW QUESTION 119
Due to a traffic storm on the network, two interfaces were error-disabled, and both interfaces sent SNMP traps.
Which two actions must be taken to ensure that interfaces are put back into service? (Choose two)
- A. Use EEM to have the ports return to service automatically in less than 300 seconds.
- B. Enter the shutdown and no shutdown commands on the interfaces.
- C. Enable the snmp-server enable traps command and wait 300 seconds
- D. Ensure that interfaces are configured with the error-disable detection and recovery feature
- E. Have Cisco Prime Infrastructure issue an SNMP set command to re-enable the ports after the pre configured interval.
Answer: B,D
Explanation:
You can also bring up the port by using these commands:
+ The "shutdown" interface configuration command followed by the "no shutdown" interface configuration command restarts the disabled port.
+ The "errdisable recovery cause ..." global configuration command enables the timer to automatically recover error-disabled state, and the "errdisable recovery interval interval" global configuration command specifies the time to recover error-disabled state.
NEW QUESTION 120
Which two tasks allow NetFlow on a Cisco ASA 5500 Series firewall? (Choose two.)
- A. Define a NetFlow collector by using the flow-export command.
- B. Create a class map to match interesting traffic.
- C. Enable NetFlow Version 9.
- D. Create an ACL to allow UDP traffic on port 9996.
- E. Apply NetFlow Exporter to the outside interface in the inbound direction.
Answer: A,E
NEW QUESTION 121
What is a benefit of using Cisco FMC over Cisco ASDM?
- A. Cisco FMC supports pushing configurations to devices while Cisco ASDM does not.
- B. Cisco FMC provides centralized management while Cisco ASDM does not.
- C. Cisco FMC supports all firewall products whereas Cisco ASDM only supports Cisco ASA devices
- D. Cisco FMC uses Java while Cisco ASDM uses HTML5.
Answer: B
Explanation:
https://www.cisco.com/c/en/us/td/docs/security/firepower/compatibility/firepower-compatibility.html
NEW QUESTION 122
Which two characteristics of messenger protocols make data exfiltration difficult to detect and prevent?
(Choose two.)
- A. Traffic is encrypted, which prevents visibility on firewalls and IPS systems.
- B. Messenger applications cannot be segmented with standard network controls.
- C. An exposed API for the messaging platform is used to send large amounts of data.
- D. Outgoing traffic is allowed so users can communicate with outside organizations.
- E. Malware infects the messenger application on the user endpoint to send company data.
Answer: B,D
NEW QUESTION 123
Which feature is supported when deploying Cisco ASAv within AWS public cloud?
- A. IPv6
- B. multiple context mode
- C. clustering
- D. user deployment of Layer 3 networks
Answer: D
Explanation:
Explanation The ASAv on AWS supports the following features: + Support for Amazon EC2 C5 instances, the next generation of the Amazon EC2 Compute Optimized instance family. + Deployment in the Virtual Private Cloud (VPC) + Enhanced networking (SR-IOV) where available + Deployment from Amazon Marketplace + Maximum of four vCPUs per instance + User deployment of L3 networks + Routed mode (default) Note: The Cisco Adaptive Security Virtual Appliance (ASAv) runs the same software as physical Cisco ASAs to deliver proven security functionality in a virtual form factor. The ASAv can be deployed in the public AWS cloud. It can then be configured to protect virtual and physical data center workloads that expand, contract, or shift their location over time. Reference: https://www.cisco.com/c/en/us/td/docs/security/asa/asa96/asav/quick-start-book/asav-96 qsg/asavaws.html The ASAv on AWS supports the following features:
+ Support for Amazon EC2 C5 instances, the next generation of the Amazon EC2 Compute Optimized instance family.
+ Deployment in the Virtual Private Cloud (VPC)
+ Enhanced networking (SR-IOV) where available
+ Deployment from Amazon Marketplace
+ Maximum of four vCPUs per instance
+ User deployment of L3 networks
+ Routed mode (default)
Note: The Cisco Adaptive Security Virtual Appliance (ASAv) runs the same software as physical Cisco ASAs to deliver proven security functionality in a virtual form factor. The ASAv can be deployed in the public AWS cloud.
Explanation The ASAv on AWS supports the following features: + Support for Amazon EC2 C5 instances, the next generation of the Amazon EC2 Compute Optimized instance family. + Deployment in the Virtual Private Cloud (VPC) + Enhanced networking (SR-IOV) where available + Deployment from Amazon Marketplace + Maximum of four vCPUs per instance + User deployment of L3 networks + Routed mode (default) Note: The Cisco Adaptive Security Virtual Appliance (ASAv) runs the same software as physical Cisco ASAs to deliver proven security functionality in a virtual form factor. The ASAv can be deployed in the public AWS cloud. It can then be configured to protect virtual and physical data center workloads that expand, contract, or shift their location over time. Reference: https://www.cisco.com/c/en/us/td/docs/security/asa/asa96/asav/quick-start-book/asav-96 qsg/asavaws.html
NEW QUESTION 124
What are the two most commonly used authentication factors in multifactor authentication? (Choose two.)
- A. encryption factor
- B. confidentiality factor
- C. knowledge factor
- D. time factor
- E. biometric factor
Answer: C,D
NEW QUESTION 125
How does a cloud access security broker function?
- A. lt integrates with other cloud solutions via APIs and monitors and creates incidents based on events from the cloud solution
- B. It scans other cloud solutions being used within the network and identifies vulnerabilities
- C. It is an authentication broker to enable single sign-on and multi-factor authentication for a cloud solution
- D. It acts as a security information and event management solution and receives syslog from other cloud solutions.
Answer: A
NEW QUESTION 126
Drag and drop the steps from the left into the correct order on the right to enable AppDynamics to monitor an EC2 instance in Amazon Web Services.
Answer:
Explanation:
NEW QUESTION 127
Which form of attack is launched using botnets?
- A. TCP flood
- B. DDOS
- C. EIDDOS
- D. virus
Answer: B
Explanation:
A botnet is a collection of internet-connected devices infected by malware that allow hackers to control them.
Cyber criminals use botnets to instigate botnet attacks, which include malicious activities such as credentials leaks, unauthorized access, data theft and DDoS attacks.
NEW QUESTION 128
Drag and drop the capabilities of Cisco Firepower versus Cisco AMP from the left into the appropriate category on the right.
Answer:
Explanation:
https://www.cisco.com/c/en/us/products/collateral/security/ngips/datasheet-c78-742472.html
https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-config-guide-v60/Reference_a_wrapper_Chapter_topic_here.html
https://www.cisco.com/c/en/us/solutions/collateral/enterprise-networks/advanced-malware-protection/solution-overview-c22-734228.html
NEW QUESTION 129
Refer to the exhibit.
What will occur when this device tries to connect to the port?
- A. 802 1X will work and the device will be allowed on the network
- B. 802.1X will not work and the device will not be allowed network access
- C. 802.1X will not work, but MAB will start and allow the device on the network.
- D. 802 1X and MAB will both be used and ISE can use policy to determine the access level
Answer: D
NEW QUESTION 130
A network administrator needs to find out what assets currently exist on the network. Third-party systems need to be able to feed host data into Cisco Firepower. What most be configured to accomplish this?
- A. a Threat Intelligence policy to download the data from the host
- B. a File Analysis policy to send file data into Cisco Firepower
- C. a Network Analysis policy to receive NelFlow data from the host
- D. a Network Discovery policy to receive data from the host
Answer: D
NEW QUESTION 131
What must be configured in Cisco ISE to enforce reauthentication of an endpoint session when an endpoint is deleted from an identity group?
- A. CoA
- B. SNMP probe
- C. posture assessment
- D. external identity source
Answer: B
NEW QUESTION 132
What is the function of Cisco Cloudlock for data security?
- A. controls malicious cloud apps
- B. user and entity behavior analytics
- C. detects anomalies
- D. data loss prevention
Answer: D
Explanation:
Explanation/Reference: https://umbrella.cisco.com/products/casb
NEW QUESTION 133
An engineer notices traffic interruption on the network. Upon further investigation, it is learned that broadcast packets have been flooding the network. What must be configured, based on a predefined threshold, to address this issue?
- A. access control lists
- B. Bridge Protocol Data Unit guard
- C. storm control
- D. embedded event monitoring
Answer: C
Explanation:
Storm control prevents traffic on a LAN from being disrupted by a broadcast, multicast, or unicast storm on one of the physical interfaces. A LAN storm occurs when packets flood the LAN, creating excessive traffic and degrading network performance. Errors in the protocol-stack implementation, mistakes in network configurations, or users issuing a denial-of-service attack can cause a storm.
By using the "storm-control broadcast level [falling-threshold]" we can limit the broadcast traffic on the switch.
NEW QUESTION 134
How does Cisco Stealthwatch Cloud provide security for cloud environments?
- A. It assigns Internet-based DNS protection for clients and servers.
- B. It prevents exfiltration of sensitive datA.
- C. It delivers visibility and threat detection.
- D. It facilitates secure connectivity between public and private networks.
Answer: C
NEW QUESTION 135
Which algorithm provides encryption and authentication for data plane communication?
- A. AES-GCM
- B. SHA-96
- C. SHA-384
- D. AES-256
Answer: A
NEW QUESTION 136
What are two benefits of Flexible NetFlow records? (Choose two)
- A. They provide monitoring of a wider range of IP packet information from Layer 2 to 4.
- B. They allow the user to configure flow information to perform customized traffic identification
- C. They provide attack prevention by dropping the traffic.
- D. They provide accounting and billing enhancements
- E. They converge multiple accounting technologies into one accounting mechanism
Answer: B,E
NEW QUESTION 137
......
Latest 100% Passing Guarantee - Brilliant 350-701 Exam Questions PDF: https://testoutce.pass4leader.com/Cisco/350-701-exam.html