Pre-Winter Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

350-701 Exam Dumps - Implementing and Operating Cisco Security Core Technologies (SCOR 350-701 v2.0)

Searching for workable clues to ace the Cisco 350-701 Exam? You’re on the right place! ExamCert has realistic, trusted and authentic exam prep tools to help you achieve your desired credential. ExamCert’s 350-701 PDF Study Guide, Testing Engine and Exam Dumps follow a reliable exam preparation strategy, providing you the most relevant and updated study material that is crafted in an easy to learn format of questions and answers. ExamCert’s study tools aim at simplifying all complex and confusing concepts of the exam and introduce you to the real exam scenario and practice it with the help of its testing engine and real exam dumps

Go to page:
Question # 233

What are the components of endpoint protection against social engineering attacks?

A.

IPsec

B.

IDS

C.

Firewall

D.

Cisco Secure Email Gateway

Full Access
Question # 234

Which Talos reputation center allows you to track the reputation of IP addresses for email and web traffic?

A.

IP Blacklist Center

B.

File Reputation Center

C.

AMP Reputation Center

D.

IP and Domain Reputation Center

Full Access
Question # 235

When a Cisco Secure Web Appliance checks a web request, what occurs if it is unable to match a user-defined policy?

A.

It applies the next identification profile policy.

B.

It applies the advanced policy.

C.

It applies the global policy.

D.

It blocks the request.

Full Access
Question # 236

What are two functions of secret key cryptography? (Choose two)

A.

key selection without integer factorization

B.

utilization of different keys for encryption and decryption

C.

utilization of large prime number iterations

D.

provides the capability to only know the key on one side

E.

utilization of less memory

Full Access
Question # 237

A company wants to enforce security policy using Cisco Secure Access Secure Internet Access. The design requirements are:

    Block adult-content and gambling categories for all users.

    Inspect file downloads for malware.

    Bypass TLS decryption for financial and healthcare domains because of compliance requirements.

    Allow the Marketing department to use social media while keeping file scanning active for downloads from those sites.

Which two configuration actions must the engineer perform in Cisco Secure Access to meet the requirements? (Choose two.)

A.

Configure a Marketing policy with higher precedence to allow social-networking sites, and apply a decryption-bypass list for financial and healthcare domains.

B.

Disable TLS decryption globally and rely on DNS-layer reputation to block adult-content and gambling sites.

C.

Use destination allow lists for financial and healthcare sites to prevent SSL inspection, with malware scanning enabled in full-inspection mode for all traffic.

D.

Create a global policy that blocks adult-content and gambling categories with TLS inspection enabled, and create a higher-precedence Marketing policy that allows social-networking sites.

E.

Implement one global policy that blocks adult-content and gambling categories, and add a web-application allow rule for social networking.

Full Access
Question # 238

What is the primary difference between an Endpoint Protection Platform and an Endpoint Detection and

Response?

A.

EPP focuses on prevention, and EDR focuses on advanced threats that evade perimeter defenses.

B.

EDR focuses on prevention, and EPP focuses on advanced threats that evade perimeter defenses.

C.

EPP focuses on network security, and EDR focuses on device security.

D.

EDR focuses on network security, and EPP focuses on device security.

Full Access
Question # 239

What are two benefits of Flexible NetFlow records? (Choose two)

A.

They allow the user to configure flow information to perform customized traffic identification

B.

They provide attack prevention by dropping the traffic

C.

They provide accounting and billing enhancements

D.

They converge multiple accounting technologies into one accounting mechanism

E.

They provide monitoring of a wider range of IP packet information from Layer 2 to 4

Full Access
Question # 240

Based on the NIST 800-145 guide, which cloud architecture is provisioned for exclusive use by a specific group of consumers from different organizations and may be owned, managed, and operated by one or more of those organizations?

A.

hybrid cloud

B.

private cloud

C.

community cloud

D.

public cloud

Full Access
Go to page: