Cisco 200-201 Practice Test Pdf Exam Material
200-201 Answers 200-201 Free Demo Are Based On The Real Exam
The benefit in Obtaining the Cisco Cybersecurity Operations Fundamentals v1.0 (200-201 CBROPS)
This exam will help you:
- Earns you the Cisco Certified CyberOps Associate certification
- Learn the fundamental skills, techniques, technologies, and the hands-on practice necessary to prevent and defend against cyberattacks as part of a SOC team
NEW QUESTION # 117
Which step in the incident response process researches an attacking host through logs in a SIEM?
- A. eradication
- B. containment
- C. preparation
- D. detection and analysis
Answer: D
NEW QUESTION # 118
What is threat hunting?
- A. Pursuing competitors and adversaries to infiltrate their system to acquire intelligence data.
- B. Focusing on proactively detecting possible signs of intrusion and compromise.
- C. Managing a vulnerability assessment report to mitigate potential threats.
- D. Attempting to deliberately disrupt servers by altering their availability
Answer: C
NEW QUESTION # 119
An analyst is investigating a host in the network that appears to be communicating to a command and control server on the Internet. After collecting this packet capture the analyst cannot determine the technique and payload used for the communication.
Which obfuscation technique is the attacker using?
- A. SHA-256 hashing
- B. ROT13 encryption
- C. Base64 encoding
- D. transport layer security encryption
Answer: D
NEW QUESTION # 120
DRAG DROP
Drag and drop the security concept on the left onto the example of that concept on the right.
Select and Place:
Answer:
Explanation:
NEW QUESTION # 121
Drag and drop the access control models from the left onto the correct descriptions on the right.
Answer:
Explanation:

NEW QUESTION # 122
Drag and drop the access control models from the left onto the correct descriptions on the right.
Answer:
Explanation:

NEW QUESTION # 123
Refer to the exhibit.
Which technology generates this log?
- A. web proxy
- B. IDS
- C. NetFlow
- D. firewall
Answer: D
NEW QUESTION # 124
Which type of attack occurs when an attacker is successful in eavesdropping on a conversation between two IP phones?
- A. known-plaintext
- B. man-in-the-middle
- C. dictionary
- D. replay
Answer: B
NEW QUESTION # 125
Which attack is the network vulnerable to when a stream cipher like RC4 is used twice with the same key?
- A. ciphertext-only attack
- B. meet-in-the-middle attack
- C. plaintext-only attack
- D. forgery attack
Answer: A
Explanation:
Explanation/Reference:
NEW QUESTION # 126
Refer to the exhibit.
Drag and drop the element name from the left onto the correct piece of the PCAP file on the right.
Answer:
Explanation:
NEW QUESTION # 127
Which tool provides a full packet capture from network traffic?
- A. Nagios
- B. Hydra
- C. CAINE
- D. Wireshark
Answer: D
NEW QUESTION # 128
A security engineer notices confidential data being exfiltrated to a domain "Ranso4134-mware31-895" address that is attributed to a known advanced persistent threat group The engineer discovers that the activity is part of a real attack and not a network misconfiguration. Which category does this event fall under as defined in the Cyber Kill Chain?
- A. weaponization
- B. delivery
- C. action on objectives
- D. reconnaissance
Answer: A
NEW QUESTION # 129
An intruder attempted malicious activity and exchanged emails with a user and received corporate information, including email distribution lists. The intruder asked the user to engage with a link in an email.
When the fink launched, it infected machines and the intruder was able to access the corporate network.
Which testing method did the intruder use?
- A. eavesdropping
- B. piggybacking
- C. social engineering
- D. tailgating
Answer: C
NEW QUESTION # 130
What is the difference between vulnerability and risk?
- A. A risk is potential threat that adversaries use to infiltrate the network, and a vulnerability is an exploit
- B. A vulnerability represents a flaw in a security that can be exploited, and the risk is the potential damage it might cause.
- C. A vulnerability is a sum of possible malicious entry points, and a risk represents the possibility of the unauthorized entry itself.
- D. A risk is a potential threat that an exploit applies to, and a vulnerability represents the threat itself
Answer: D
NEW QUESTION # 131
Refer to the exhibit.
This request was sent to a web application server driven by a database. Which type of web server attack is represented?
- A. command injection
- B. heap memory corruption
- C. blind SQL injection
- D. parameter manipulation
Answer: C
NEW QUESTION # 132
Which security principle requires more than one person is required to perform a critical task?
- A. separation of duties
- B. least privilege
- C. due diligence
- D. need to know
Answer: A
Explanation:
Section: Security Concepts
NEW QUESTION # 133
......
200-201 [Dec-2023] Newly Released] Exam Questions For You To Pass: https://www.newpassleader.com/Cisco/200-201-exam-preparation-materials.html
Cisco 200-201 Exam: Basic Questions With Answers: https://drive.google.com/open?id=1vSw-p1CEp7wr3DnUiOfcSfWDoNyjB4p0