350-701 Exam Questions & Answers
Implementing and Operating Cisco Security Core Technologies • Cisco
100% money-back guarantee
Sample 350-701 Questions
Practice with real exam-style questions, each with the verified correct answer and explanation.
[Security Concepts]
Which attack type attempts to shut down a machine or network so that users are not able to access it?
Denial-of-service (DDoS) aims at shutting down a network or service, causing it to be inaccessible to its
intended users.
The Smurf attack is a DDoS attack in which large numbers of Internet Control Message Protocol (ICMP)
packets with the intended victim's spoofed source IP are broadcast to a computer network using an IP
broadcast address.
[Security Concepts]
An organization uses Cisco FMC to centrally manage multiple Cisco FTD devices. The default management
port conflicts with other communications on the network and must be changed. What must be done to ensure
that all devices can communicate together?
The FMC and managed devices communicate using a two-way, SSL-encrypted communication channel, which by default is on port 8305.
Cisco strongly recommends that you keep the default settings for the remote management port, but if the
management port conflicts with other communications on your network, you can choose a different port. If you change the management port, you must change it for all devices in your deployment that need to communicate with each other.
[Security Concepts]
Which statement describes a serverless application?
A serverless application is one that does not require the developer to manage the underlying infrastructure or servers. Instead, the application code is executed by a cloud provider in response to events or triggers, such as HTTP requests, database changes, or messages. The cloud provider automatically provisions, scales, and manages the resources needed to run the code, and charges only for the time and resources consumed by the execution. A serverless application runs from an ephemeral, event-triggered, and stateless container that is fully managed by a cloud provider. This means that the container is created on demand when an event occurs, and is destroyed when the execution is completed. The container does not store any persistent state or data, and is isolated from other containers. The cloud provider handles the load balancing, fault tolerance, security, and monitoring of the container. A serverless application can leverage various cloud services, such as databases, storage, messaging, analytics, and machine learning, to perform complex tasks and functionalities. Serverless computing is a cloud-native development model that enables developers to focus on the business logic and deliver faster and more scalable applications.Reference:
Implementing and Operating Cisco Security Core Technologies (SCOR) v1.0, Module 8: Cloud and Virtual Network Security, Lesson 8.1: Cloud Computing Concepts
What is serverless? - Red Hat
Serverless computing and applications | Microsoft Azure
[Security Concepts]
Which open standard creates a framework for sharing threat intelligence in a machine-digestible format?
The open standard that creates a framework for sharing threat intelligence in a machine-digestible format is STIX (Structured Threat Information Expression). STIX is a language and serialization format that enables the exchange of cyber threat information across organizations, tools, and platforms. STIX defines a common vocabulary and data model for representing various types of threat intelligence, such as indicators, observables, incidents, campaigns, threat actors, courses of action, and more. STIX also supports the expression of context, relationships, confidence, and handling of the threat information. STIX aims to improve the speed, accuracy, and efficiency of threat detection, analysis, and response.
STIX is often used in conjunction with TAXII (Trusted Automated Exchange of Indicator Information), which is a protocol and transport mechanism that enables the secure and automated communication of STIX data. TAXII defines how to request, send, receive, and store STIX data using standard methods and formats, such as HTTPS, JSON, and XML. TAXII supports various exchange models, such as hub-and-spoke, peer-to-peer, or subscription-based. TAXII enables the interoperability and scalability of threat intelligence sharing among different systems and organizations.
Implementing and Operating Cisco Security Core Technologies (SCOR) v1.0, Module 1: Malware Threats, Lesson 3: Identifying Advanced Threats, Topic: Threat Intelligence Sharing
What is STIX/TAXII? | Cloudflare
STIX 2.1 Specification Documents
[Endpoint Protection and Detection]
Which Cisco security solution provides patch management in the cloud?
Cisco Tetration is a Cisco security solution that provides patch management in the cloud.Patch management is the process of identifying, acquiring, installing, and verifying patches for products and systems to correct security and functionality problems in software and firmware1.Cisco Tetration is a cloud-native platform that delivers comprehensive workload protection for multicloud data centers by enabling a zero-trust model using segmentation2.One of the features of Cisco Tetration is software vulnerability detection and patch management, which allows users to identify software vulnerabilities on workloads, prioritize patching based on risk scores, and automate patch deployment using orchestration tools3.Cisco Tetration leverages the National Vulnerability Database (NVD) and Cisco Talos Intelligence Group to provide up-to-date information on software vulnerabilities and their severity levels3.Cisco Tetration also supports patch management for both Windows and Linux operating systems, as well as third-party applications such as Apache, Java, MySQL, and Oracle4. Therefore, the correct answer is D.Cisco Tetration.Reference:1: RFC 9232: Network Telemetry Framework - Internet Engineering Task Force2: Cisco Tetration - Workload Protection - Cisco3: Cisco Tetration Software Vulnerability Detection and Patch Management - Cisco4: Cisco Tetration Platform Data Sheet - Cisco
Get access to all 727 verified questions with detailed answers.
Unlock All 350-701 Questions