200-201 Exam Details

  • Exam Code
    :200-201
  • Exam Name
    :Understanding Cisco Cybersecurity Operations Fundamentals (CBROPS)
  • Certification
    :CyberOps Associate
  • Vendor
    :Cisco
  • Total Questions
    :543 Q&As
  • Last Updated
    :May 24, 2026

Cisco 200-201 Online Questions & Answers

  • Question 201:

    In digital communications, which method is recommended for securely exchanging public keys between users T0n2262144790 and D4n4126220794?

    A. Hardware Security Module
    B. Automated Certificate Management Environment
    C. Pretty Good Privacy
    D. Secure Multipurpose Internet Mail Extensions

  • Question 202:

    Which component is responsible for assigning IP addresses to devices on a network?

    A. DNS
    B. DHCP
    C. NAT
    D. SNMP

  • Question 203:

    Which type of evasion technique is accomplished by separating the traffic into smaller segments before transmitting across the network?

    A. encryption
    B. tunneling
    C. proxies
    D. fragmentation

  • Question 204:

    Which technique is commonly used to exploit database vulnerabilities?

    A. cross-site scripting
    B. SQL injection
    C. phishing
    D. ARP spoofing

  • Question 205:

    Refer to the exhibit.

    What is occurring?

    A. ARP flood
    B. DNS amplification
    C. ARP poisoning
    D. DNS tunneling

  • Question 206:

    What are two differences in how tampered and untampered disk images affect a security incident? (Choose two.)

    A. Untampered images are used in the security investigation process
    B. Tampered images are used in the security investigation process
    C. The image is tampered if the stored hash and the computed hash match
    D. Tampered images are used in the incident recovery process
    E. The image is untampered if the stored hash and the computed hash match

  • Question 207:

    DRAG DROP

    Drag and drop the technology on the left onto the data type the technology provides on the right.

    Select and Place:

  • Question 208:

    Which two elements of the incident response process are stated in NIST Special Publication 800-61 r2? (Choose two.)

    A. detection and analysis
    B. post-incident activity
    C. vulnerability management
    D. risk assessment
    E. vulnerability scoring

  • Question 209:

    Refer to the exhibit.

    What is the potential threat identified in this Stealthwatch dashboard?

    A. A policy violation is active for host 10.10.101.24.
    B. A host on the network is sending a DDoS attack to another inside host.
    C. There are two active data exfiltration alerts.
    D. A policy violation is active for host 10.201.3.149.

  • Question 210:

    What are two differences of deep packet inspection compared to stateful firewall inspection? (Choose two.)

    A. static lists for maintaining a strict access control level
    B. different rule configurations based on payload pattern
    C. quality of service capabilities based on list definitions
    D. offers application-level monitoring
    E. inspection of only the first packet during a connection attempt

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 200-201 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.