Exam Details

  • Exam Code
    :350-701
  • Exam Name
    :Implementing and Operating Cisco Security Core Technologies (SCOR)
  • Certification
    :CCNP Security
  • Vendor
    :Cisco
  • Total Questions
    :753 Q&As
  • Last Updated
    :Apr 12, 2025

Cisco CCNP Security 350-701 Questions & Answers

  • Question 441:

    A Cisco Firepower administrator needs to configure a rule to allow a new application that has never been seen on the network. Which two actions should be selected to allow the traffic to pass without inspection? (Choose two)

    A. permit

    B. trust

    C. reset

    D. allow

    E. monitor

  • Question 442:

    What are two Trojan malware attacks? (Choose two)

    A. Frontdoor

    B. Rootkit

    C. Smurf

    D. Backdoor

    E. Sync

  • Question 443:

    What is a capability of Cisco ASA Netflow?

    A. It filters NSEL events based on traffic

    B. It generates NSEL events even if the MPF is not configured

    C. It logs all event types only to the same collector

    D. It sends NetFlow data records from active and standby ASAs in an active standby failover pair

  • Question 444:

    Which group within Cisco writes and publishes a weekly newsletter to help cybersecurity professionals remain aware of the ongoing and most prevalent threats?

    A. PSIRT

    B. Talos

    C. CSIRT

    D. DEVNET

  • Question 445:

    An organization received a large amount of SPAM messages over a short time period. In order to take action on the messages, it must be determined how harmful the messages are and this needs to happen dynamically. What must be configured to accomplish this?

    A. Configure the Cisco WSA to modify policies based on the traffic seen

    B. Configure the Cisco ESA to receive real-time updates from Talos

    C. Configure the Cisco WSA to receive real-time updates from Talos

    D. Configure the Cisco ESA to modify policies based on the traffic seen

  • Question 446:

    An engineer is configuring 802.1X authentication on Cisco switches in the network and is using CoA as a mechanism. Which port on the firewall must be opened to allow the CoA traffic to traverse the network?

    A. TCP 6514

    B. UDP 1700

    C. TCP 49

    D. UDP 1812

  • Question 447:

    An administrator is trying to determine which applications are being used in the network but does not want the network devices to send metadata to Cisco Firepower. Which feature should be used to accomplish this?

    A. NetFlow

    B. Packet Tracer

    C. Network Discovery

    D. Access Control

  • Question 448:

    A network administrator is using the Cisco ESA with AMP to upload files to the cloud for analysis. The network is congested and is affecting communication. How will the Cisco ESA handle any files which need analysis?

    A. AMP calculates the SHA-256 fingerprint, caches it, and periodically attempts the upload.

    B. The file is queued for upload when connectivity is restored.

    C. The file upload is abandoned.

    D. The ESA immediately makes another attempt to upload the file.

  • Question 449:

    What are two differences between a Cisco WSA that is running in transparent mode and one running in explicit mode? (Choose two)

    A. When the Cisco WSA is running in transparent mode, it uses the WSA's own IP address as the HTTP request destination.

    B. The Cisco WSA responds with its own IP address only if it is running in explicit mode.

    C. The Cisco WSA is configured in a web browser only if it is running in transparent mode.

    D. The Cisco WSA uses a Layer 3 device to redirect traffic only if it is running in transparent mode.

    E. The Cisco WSA responds with its own IP address only if it is running in transparent mode.

  • Question 450:

    Which type of API is being used when a security application notifies a controller within a software-defined network architecture about a specific security threat? (Choose two)

    A. westbound AP

    B. southbound API

    C. northbound API

    D. eastbound API

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 350-701 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.