350-701 Exam Details

  • Exam Code
    :350-701
  • Exam Name
    :Implementing and Operating Cisco Security Core Technologies (SCOR)
  • Certification
    :CCIE Security
  • Vendor
    :Cisco
  • Total Questions
    :784 Q&As
  • Last Updated
    :May 30, 2026

Cisco 350-701 Online Questions & Answers

  • Question 331:

    What is a benefit of performing device compliance?

    A. Verification of the latest OS patches
    B. Providing multi-factor authentication
    C. Providing attribute-driven policies
    D. Device classification and authorization

  • Question 332:

    An administrator is configuring a DHCP server to better secure their environment. They need to be able to rate-limit the traffic and ensure that legitimate requests are not dropped.

    How would this be accomplished?

    A. Set a trusted interface for the DHCP server
    B. Set the DHCP snooping bit to 1
    C. Add entries in the DHCP snooping database
    D. Enable ARP inspection for the required VLAN

  • Question 333:

    In which two customer environments is the Cisco WSAv connector traffic direction method selected? (Choose two.)

    A. Customer owns ASA Appliance and Virtual Form Factor is required.
    B. Customer does not own Cisco hardware and needs Explicit Proxy.
    C. Customer owns ASA Appliance and SSL Tunneling is required.
    D. Customer needs to support roaming users.
    E. Customer does not own Cisco hardware and needs Transparent Redirection (WCCP).

  • Question 334:

    Refer to the exhibit. A network engineer wants to reduce the operational costs of SNMPv3 by using trapping instead of polling. Which code snippet completes the configuration to enable authentication for SNMPv3 trapping?

    A. Option A
    B. Option B
    C. Option C
    D. Option D

  • Question 335:

    A network engineer is configuring a Cisco Catalyst switch. The network engineer must prevent traffic on the network from being interrupted by broadcast packets flooding the network using a predefined threshold. What must be configured on the switch?

    A. DHCP Snooping
    B. Embedded Event Monitoring
    C. Storm Control
    D. Loop Guard

  • Question 336:

    Refer to the exhibit.

    Logins from internal users to a Cisco Adaptive Security Appliance firewall must be performed by using a TACACS server. The firewall is already configured. Which additional configuration must be performed to configure the TACACS+ server group with a key of Cisco4512!?

    A. Option A
    B. Option B
    C. Option C
    D. Option D

  • Question 337:

    What is a difference between Cisco AMP for Endpoints and Cisco Umbrella?

    A. Cisco AMP for Endpoints is a cloud-based service, and Cisco Umbrella is not.
    B. Cisco AMP for Endpoints prevents connections to malicious destinations, and Cisco Umbrella works at the file level to prevent the initial execution of malware
    C. Cisco AMP for Endpoints automatically researches indicators of compromise and confirms threats and Cisco Umbrella does not
    D. Cisco AMP for Endpoints prevents, detects, and responds to attacks before damage can be done, and Cisco Umbrella provides the first line of defense against Internet threats

  • Question 338:

    An engineer is adding a Cisco DUO solution to the current TACACS+ deployment using Cisco ISE. The engineer wants to authenticate users using their account when they log into network devices. Which action accomplishes this task?

    A. Configure Cisco DUO with the external Active Directory connector and tie it to the policy set within Cisco ISE.
    B. Install and configure the Cisco DUO Authentication Proxy and configure the identity source sequence within Cisco ISE
    C. Create an identity policy within Cisco ISE to send all authentication requests to Cisco DUO.
    D. Modify the current policy with the condition MFASourceSequence DUO=true in the authorization conditions within Cisco ISE

  • Question 339:

    DRAG DROP

    Refer to the exhibit.

    An engineer must configure a Cisco switch to perform PPP authentication via a TACACS server located at IP address 10.1.1.10. Authentication must fall back to the local database using the username LocalUser and password C1$c0445915422! if TACACS server is unreachable.

    Drag and drop the commands from the left onto the corresponding configuration steps on the right.

    Select and Place:

  • Question 340:

    Which IPS engine detects ARP spoofing?

    A. Atomic ARP Engine
    B. Service Generic Engine
    C. ARP Inspection Engine
    D. AIC Engine

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 350-701 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.