Cisco 200-201 Practice Test Pdf Exam Material [Q117-Q133]

Share

Cisco 200-201 Practice Test Pdf Exam Material

200-201 Answers 200-201 Free Demo Are Based On The Real Exam


The benefit in Obtaining the Cisco Cybersecurity Operations Fundamentals v1.0 (200-201 CBROPS)

This exam will help you:

  • Earns you the Cisco Certified CyberOps Associate certification
  • Learn the fundamental skills, techniques, technologies, and the hands-on practice necessary to prevent and defend against cyberattacks as part of a SOC team

 

NEW QUESTION # 117
Which step in the incident response process researches an attacking host through logs in a SIEM?

  • A. eradication
  • B. containment
  • C. preparation
  • D. detection and analysis

Answer: D


NEW QUESTION # 118
What is threat hunting?

  • A. Pursuing competitors and adversaries to infiltrate their system to acquire intelligence data.
  • B. Focusing on proactively detecting possible signs of intrusion and compromise.
  • C. Managing a vulnerability assessment report to mitigate potential threats.
  • D. Attempting to deliberately disrupt servers by altering their availability

Answer: C


NEW QUESTION # 119
An analyst is investigating a host in the network that appears to be communicating to a command and control server on the Internet. After collecting this packet capture the analyst cannot determine the technique and payload used for the communication.

Which obfuscation technique is the attacker using?

  • A. SHA-256 hashing
  • B. ROT13 encryption
  • C. Base64 encoding
  • D. transport layer security encryption

Answer: D


NEW QUESTION # 120
DRAG DROP
Drag and drop the security concept on the left onto the example of that concept on the right.
Select and Place:

Answer:

Explanation:


NEW QUESTION # 121
Drag and drop the access control models from the left onto the correct descriptions on the right.

Answer:

Explanation:


NEW QUESTION # 122
Drag and drop the access control models from the left onto the correct descriptions on the right.

Answer:

Explanation:


NEW QUESTION # 123
Refer to the exhibit.

Which technology generates this log?

  • A. web proxy
  • B. IDS
  • C. NetFlow
  • D. firewall

Answer: D


NEW QUESTION # 124
Which type of attack occurs when an attacker is successful in eavesdropping on a conversation between two IP phones?

  • A. known-plaintext
  • B. man-in-the-middle
  • C. dictionary
  • D. replay

Answer: B


NEW QUESTION # 125
Which attack is the network vulnerable to when a stream cipher like RC4 is used twice with the same key?

  • A. ciphertext-only attack
  • B. meet-in-the-middle attack
  • C. plaintext-only attack
  • D. forgery attack

Answer: A

Explanation:
Explanation/Reference:


NEW QUESTION # 126
Refer to the exhibit.

Drag and drop the element name from the left onto the correct piece of the PCAP file on the right.

Answer:

Explanation:


NEW QUESTION # 127
Which tool provides a full packet capture from network traffic?

  • A. Nagios
  • B. Hydra
  • C. CAINE
  • D. Wireshark

Answer: D


NEW QUESTION # 128
A security engineer notices confidential data being exfiltrated to a domain "Ranso4134-mware31-895" address that is attributed to a known advanced persistent threat group The engineer discovers that the activity is part of a real attack and not a network misconfiguration. Which category does this event fall under as defined in the Cyber Kill Chain?

  • A. weaponization
  • B. delivery
  • C. action on objectives
  • D. reconnaissance

Answer: A


NEW QUESTION # 129
An intruder attempted malicious activity and exchanged emails with a user and received corporate information, including email distribution lists. The intruder asked the user to engage with a link in an email.
When the fink launched, it infected machines and the intruder was able to access the corporate network.
Which testing method did the intruder use?

  • A. eavesdropping
  • B. piggybacking
  • C. social engineering
  • D. tailgating

Answer: C


NEW QUESTION # 130
What is the difference between vulnerability and risk?

  • A. A risk is potential threat that adversaries use to infiltrate the network, and a vulnerability is an exploit
  • B. A vulnerability represents a flaw in a security that can be exploited, and the risk is the potential damage it might cause.
  • C. A vulnerability is a sum of possible malicious entry points, and a risk represents the possibility of the unauthorized entry itself.
  • D. A risk is a potential threat that an exploit applies to, and a vulnerability represents the threat itself

Answer: D


NEW QUESTION # 131
Refer to the exhibit.

This request was sent to a web application server driven by a database. Which type of web server attack is represented?

  • A. command injection
  • B. heap memory corruption
  • C. blind SQL injection
  • D. parameter manipulation

Answer: C


NEW QUESTION # 132
Which security principle requires more than one person is required to perform a critical task?

  • A. separation of duties
  • B. least privilege
  • C. due diligence
  • D. need to know

Answer: A

Explanation:
Section: Security Concepts


NEW QUESTION # 133
......

200-201 [Dec-2023] Newly Released] Exam Questions For You To Pass: https://www.newpassleader.com/Cisco/200-201-exam-preparation-materials.html

Cisco 200-201 Exam: Basic Questions With Answers: https://drive.google.com/open?id=1vSw-p1CEp7wr3DnUiOfcSfWDoNyjB4p0