
Refer to the exhibit.
How are tokens authenticated when the REST API on a device is accessed from a REST API client?
Reveal answer details Close answer details
Correct answerD
Cisco · 350-201
Preview real exam questions, verified answers and available explanations before choosing a study plan.
|
Single choice
![]() Refer to the exhibit. How are tokens authenticated when the REST API on a device is accessed from a REST API client? Reveal answer details Close answer detailsCorrect answerD
Single choice
An engineer is developing an application that requires frequent updates to close feedback loops and enable teams to quickly apply patches. The team wants their code updates to get to market as often as possible. Which software development approach should be used to accomplish these goals? Reveal answer details Close answer detailsCorrect answerA
Single choice
An engineer receives an incident ticket with hundreds of intrusion alerts that require investigation. An analysis of the incident log shows that the alerts are from trusted IP addresses and internal devices. The final incident report stated that these alerts were false positives and that no intrusions were detected. What action should be taken to harden the network? Reveal answer details Close answer detailsCorrect answerC
Single choice
A threat actor used a phishing email to deliver a file with an embedded macro. The file was opened, and a remote code execution attack occurred in a company's infrastructure. Which steps should an engineer take at the recovery stage? Reveal answer details Close answer detailsCorrect answerB
Single choice
Refer to the exhibit. An engineer received multiple reports from employees unable to log into systems with the error: The Group Policy Client service failed to logon - Access is denied. Through further analysis, the engineer discovered several unexpected modifications to system settings. Which type of breach is occurring? ![]() Reveal answer details Close answer detailsCorrect answerC
Single choice
![]() Refer to the exhibit. An engineer notices a significant anomaly in the traffic in one of the host groups in Cisco Secure Network Analytics (Stealthwatch) and must analyze the top data transmissions. Which tool accomplishes this task? Reveal answer details Close answer detailsCorrect answerB Explanation References:
Multiple choice
A security incident affected an organization's critical business services, and the customer-side web API became unresponsive and crashed. An investigation revealed a spike of API call requests and a high number of inactive sessions during the incident. Which two recommendations should the engineers make to prevent similar incidents in the future? (Choose two.) Reveal answer details Close answer detailsCorrect answersB, D
Single choice
![]() Refer to the exhibit. An organization is using an internal application for printing documents that requires a separate registration on the website. The application allows format-free user creation, and users must match these required conditions to comply with the company's user creation policy: minimum length: 3 usernames can only use letters, numbers, dots, and underscores usernames cannot begin with a number The application administrator has to manually change and track these daily to ensure compliance. An engineer is tasked to implement a script to automate the process according to the company user creation policy. The engineer implemented this piece of code within the application, but users are still able to create format-free usernames. Which change is needed to apply the restrictions? Reveal answer details Close answer detailsCorrect answerB
Drag & drop
DRAG DROP Drag and drop the actions below the image onto the boxes in the image for the actions that should be taken during this playbook step. Not all options are used. ![]() Reveal answer details Close answer details![]()
Single choice
After a recent malware incident, the forensic investigator is gathering details to identify the breach and causes. The investigator has isolated the affected workstation. What is the next step that should be taken in this investigation? Reveal answer details Close answer detailsCorrect answerC
Multiple choice
Engineers are working to document, list, and discover all used applications within an organization. During the regular assessment of applications from the HR backup server, an engineer discovered an unknown application. The analysis showed that the application is communicating with external addresses on a non-secure, unencrypted channel. Information gathering revealed that the unknown application does not have an owner and is not being used by a business unit. What are the next two steps the engineers should take in this investigation? (Choose two.) Reveal answer details Close answer detailsCorrect answersA, D
Single choice
Refer to the exhibit. A security analyst needs to investigate a security incident involving several suspicious connections with a possible attacker. Which tool should the analyst use to identify the source IP of the offender? ![]() Reveal answer details Close answer detailsCorrect answerA
Single choice
A security expert is investigating a breach that resulted in a $32 million loss from customer accounts. Which step was missed that would have prevented this breach? Reveal answer details Close answer detailsCorrect answerD Explanation References:
Single choice
A SOC analyst detected a ransomware outbreak in the organization coming from a malicious email attachment. Affected parties are notified, and the incident response team is assigned to the case. Reveal answer details Close answer detailsCorrect answerD
Single choice
![]() Refer to the exhibit. An engineer is analyzing this Vlan0386-int12-117.pcap file in Wireshark after detecting a suspicious network activity. The origin header for the direct IP connections in the packets was initiated by a google chrome extension on a WebSocket protocol. The engineer checked message payloads to determine what information was being sent off-site but the payloads are obfuscated and unreadable. What does this STIX indicate? Reveal answer details Close answer detailsCorrect answerC
Single choice
Refer to the exhibit. Two types of clients are accessing the front ends and the core database that manages transactions, access control, and atomicity. What is the threat model for the SQL database? ![]() Reveal answer details Close answer detailsCorrect answerA
Single choice
An organization had several cyberattacks over the last 6 months and has tasked an engineer with looking for patterns or trends that will help the organization anticipate future attacks and mitigate them. Which data analytic technique should the engineer use to accomplish this task? Reveal answer details Close answer detailsCorrect answerC Explanation References:
Single choice
A security architect in an automotive factory is working on the Cyber Security Management System and is implementing procedures and creating policies to prevent attacks. Which standard must the architect apply? Reveal answer details Close answer detailsCorrect answerB
Single choice
According to GDPR, what should be done with data to ensure its confidentiality, integrity, and availability? Reveal answer details Close answer detailsCorrect answerB Explanation References:
Drag & drop
DRAG DROP ![]() Refer to the exhibit. The Cisco Secure Network Analytics (Stealthwatch) console alerted with "New Malware Server Discovered" and the IOC indicates communication from an end-user desktop to a Zeus ![]() Reveal answer details Close answer details![]()
Single choice
![]() Refer to the exhibit. Reveal answer details Close answer detailsCorrect answerC Explanation References: |