350-701 Exam Details

  • Exam Code
    :350-701
  • Exam Name
    :Implementing and Operating Cisco Security Core Technologies (SCOR)
  • Certification
    :CCIE Security
  • Vendor
    :Cisco
  • Total Questions
    :784 Q&As
  • Last Updated
    :May 30, 2026

Cisco 350-701 Online Questions & Answers

  • Question 421:

    DRAG DROP

    Drag and drop the Firepower Next Generation Intrustion Prevention System detectors from the left onto the correct definitions on the right.

    Select and Place:

  • Question 422:

    A company recently discovered an attack propagating throughout their Windows network via a file named abc428565580xyz.exe. The malicious file was uploaded to a Simple Custom Detection list in the AMP for Endpoints Portal and the currently applied policy for the Windows clients was updated to reference the detection list. Verification testing scans on known infected systems shows that AMP for Endpoints is not detecting the presence of this file as an indicator of compromise.

    What must be performed to ensure detection of the malicious file?

    A. Upload the malicious file to the Blocked Application Control List
    B. Use an Advanced Custom Detection List instead of a Simple Custom Detection List
    C. Check the box in the policy configuration to send the file to Cisco Threat Grid for dynamic analysis
    D. Upload the SHA-256 hash for the file to the Simple Custom Detection List

  • Question 423:

    Which DoS attack uses fragmented packets in an attempt to crash a target machine?

    A. teardrop
    B. smurf
    C. LAND
    D. SYN flood

  • Question 424:

    Refer to the exhibit.

    When configuring a remote access VPN solution terminating on the Cisco ASA, an administrator would like to utilize an external token authentication mechanism in conjunction with AAA authentication using machine certificates. Which configuration item must be modified to allow this?

    A. Group Policy
    B. Method
    C. SAML Server
    D. DHCP Servers

  • Question 425:

    What is the term for having information about threats and threat actors that helps mitigate harmful events that would otherwise compromise networks or systems?

    A. trusted automated exchange
    B. Indicators of Compromise
    C. The Exploit Database
    D. threat intelligence

  • Question 426:

    A network administrator needs to find out what assets currently exist on the network. Third- party systems need to be able to feed host data into Cisco Firepower. What must be configured to accomplish this?

    A. a Network Discovery policy to receive data from the host
    B. a Threat Intelligence policy to download the data from the host
    C. a File Analysis policy to send file data into Cisco Firepower
    D. a Network Analysis policy to receive NetFlow data from the host

  • Question 427:

    Which security solution uses NetFlow to provide visibility across the network, data center, branch offices, and cloud?

    A. Cisco CTA
    B. Cisco Stealthwatch
    C. Cisco Encrypted Traffic Analytics
    D. Cisco Umbrella

  • Question 428:

    What do tools like Jenkins, Octopus Deploy, and Azure DevOps provide in terms of application and infrastructure automation?

    A. continuous integration and continuous deployment
    B. cloud application security broker
    C. compile-time instrumentation
    D. container orchestration

  • Question 429:

    A network administrator has configured TACACS on a network device using the key Cisc0467380030 tor authentication purposes. However, users are unable to authenticate. TACACS server is reachable, but authentication is tailing. Which configuration step must the administrator complete?

    A. Implement synchronized system clock on TACACS server that matches the network device.
    B. Install a compatible operating system version on the TACACS server.
    C. Configure the TACACS key on the server to match with the network device.
    D. Apply an access control list on TACACS server to allow communication with the network device.

  • Question 430:

    Which algorithm provides encryption and authentication for data plane communication?

    A. AES-GCM
    B. SHA-96
    C. AES-256
    D. SHA-384

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 350-701 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.