200-201 Exam Details

  • Exam Code
    :200-201
  • Exam Name
    :Understanding Cisco Cybersecurity Operations Fundamentals (CBROPS)
  • Certification
    :CyberOps Associate
  • Vendor
    :Cisco
  • Total Questions
    :543 Q&As
  • Last Updated
    :May 24, 2026

Cisco 200-201 Online Questions & Answers

  • Question 171:

    Which description is a defense-in-depth principal strategy?

    A. isolating employees with access to critical data
    B. implementing VLANs to segment network traffic
    C. developing approval flow for new hires
    D. designing Active Directory groups

  • Question 172:

    Which metric is used to capture the level of access needed to launch a successful attack?

    A. privileges required
    B. user interaction
    C. attack complexity
    D. attack vector

  • Question 173:

    What is a Shellshock vulnerability?

    A. command injection
    B. cross site scripting
    C. heap overflow
    D. SQL injection

  • Question 174:

    Which open-sourced packet capture tool uses Linux and Mac OS X operating systems?

    A. NetScout
    B. tcpdump
    C. SolarWinds
    D. netsh

  • Question 175:

    Refer to exhibit.

    Which alert is identified from this packet?

    A. SSDP amplification
    B. SYN flood
    C. TCP fragmentation attack
    D. Fraggle attack

  • Question 176:

    A security team receives a ticket to investigate suspicious emails sent to company employees from known malicious domains. Further analysis shows that a targeted phishing attempt was successfully blocked by the company's email antivirus.

    At which step of the Cyber Kill Chain did the security team mitigate this attack?

    A. Delivery
    B. Actions on Objectives
    C. Command and Control
    D. Weaponization

  • Question 177:

    Which type of attack involves sending input commands to a web server to access data?

    A. SQL injection
    B. Denial of service
    C. Cross-site scripting
    D. DNS poisoning

  • Question 178:

    Which evasion technique is a function of ransomware?

    A. extended sleep calls
    B. encryption
    C. resource exhaustion
    D. encoding

  • Question 179:

    Which TCP flag is used to acknowledge receipt of data during a session?

    A. SYN
    B. ACK
    C. FIN
    D. RST

  • Question 180:

    What is the difference between the ACK flag and the RST flag in the NetFlow log session?

    A. The RST flag confirms the beginning of the TCP connection, and the ACK flag responds when the data for the payload is complete
    B. The ACK flag confirms the beginning of the TCP connection, and the RST flag responds when the data for the payload is complete
    C. The RST flag confirms the receipt of the prior segment, and the ACK flag allows for the spontaneous termination of a connection
    D. The ACK flag confirms the receipt of the prior segment, and the RST flag allows for the spontaneous termination of a connection

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 200-201 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.