Summer Certification Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = getmirror

Pass the Cisco CyberOps Associate 200-201 Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam 200-201 Premium Access

View all detail and faqs for the 200-201 exam


794 Students Passed

89% Average Score

95% Same Questions
Viewing page 2 out of 15 pages
Viewing questions 11-20 out of questions
Questions # 11:

An analyst performs traffic analysis to detect data exfiltration and identifies a high frequency of DNS requests in a small period of time Which technology makes this behavior feasible?

Options:

A.

access control list

B.

NAT

C.

tunneling

D.

encryption

Questions # 12:

Drag and drop the uses on the left onto the type of security system on the right.

Question # 12

Options:

Questions # 13:

What does the SOC metric MTTC provide in incident analysis'?

Options:

A.

average time it takes to fix the issues caused by the incident

B.

average time it takes to recognize and stop the incident

C.

average time it takes to detect that the incident has occurred

D.

average time the attacker has access to the environment

Questions # 14:

What are two differences of deep packet inspection compared to stateful firewall inspection? (Choose two.)

Options:

A.

static lists for maintaining a strict access control level

B.

offers application-level monitoring

C.

inspection of only the first packet during a connection attempt

D.

different rule configurations based on payload pattern

E.

quality of service capabilities based on list definitions

Questions # 15:

Which type of attack occurs when an attacker is successful in eavesdropping on a conversation between two IP phones?

Options:

A.

known-plaintext

B.

replay

C.

dictionary

D.

man-in-the-middle

Questions # 16:

An engineer received a flood of phishing emails from HR with the source address HRjacobm@companycom. What is the threat actor in this scenario?

Options:

A.

phishing email

B.

sender

C.

HR

D.

receiver

Questions # 17:

What is the function of a command and control server?

Options:

A.

It enumerates open ports on a network device

B.

It drops secondary payload into malware

C.

It is used to regain control of the network after a compromise

D.

It sends instruction to a compromised system

Questions # 18:

Drag and drop the security concept on the left onto the example of that concept on the right.

Question # 18

Options:

Questions # 19:

Which type of access control depends on the job function of the user?

Options:

A.

discretionary access control

B.

nondiscretionary access control

C.

role-based access control

D.

rule-based access control

Questions # 20:

A CMS plugin creates two files that are accessible from the Internet myplugin html and exploitable php A newly discovered exploit takes advantage of an injection vulnerability m exploitable php To exploit the vulnerability an HTTP POST must be sent with specific variables to exploitable php A security engineer notices traffic to the webserver that consists of only HTTP GET requests to myplugin html Which category does this activity fall under?

Options:

A.

weaponization

B.

installation

C.

reconnaissance

D.

exploitation

Viewing page 2 out of 15 pages
Viewing questions 11-20 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.