Cisco

350-701 practice test

Practice with 15 free Testara sample questions, or choose paid access to the full 560-question bank.

Provider
Cisco
Question bank
560
Free sample
15 questions
Publisher
Testara

About this practice material

This page covers Testara's practice question bank for 350-701, a certification listed under Cisco. Questions use original, exam-style scenarios and are not questions from the official certification exam.

Testara is an independent practice platform and is not affiliated with, endorsed by, or authorized by Cisco. The certification credential is issued by Cisco, not Testara. Certification and provider names belong to their respective owners.

Start practicing

The guest demo does not save an attempt. Sign in before buying access.

Try 15 questions free

Available without signing in

Free sample questions

These 15 questions and their explanations are server-rendered so you can inspect the material before opening the interactive demo.

  1. Question 1 · 1

    Which functions of an SDN architecture require southbound APIs to enable communication?

    Choose one answer.

    • SDN controller and the network elements
    • management console and the SDN controller
    • management console and the cloud
    • SDN controller and the cloud
  2. Question 2 · 1

    Which two behavioral patterns characterize a ping of death attack? (Choose two.)

    Choose all answers that apply.

    • The attack is fragmented into groups of 16 octets before transmission.
    • The attack is fragmented into groups of 8 octets before transmission.
    • Short synchronized bursts of traffic are used to disrupt TCP connections.
    • Malformed packets are used to crash systems.
    • Publicly accessible DNS servers are typically used to execute the attack.
  3. Question 3 · 1

    Which information is required when adding a device to Firepower Management Center?

    Choose one answer.

    • username and password
    • encryption method
    • device serial number
    • registration key
  4. Question 4 · 1

    What can be integrated with Cisco Threat Intelligence Director to provide information about security threats, which allows the SOC to proactively automate responses to those threats?

    Choose one answer.

    • Cisco Umbrella
    • External Threat Feeds
    • Cisco Threat Grid
    • Cisco Stealthwatch
  5. Question 5 · 1

    Which Cisco command enables authentication, authorization, and accounting globally so that CoA is supported on the device?

    Choose one answer.

    • aaa server radius dynamic-author
    • auth-type all
    • aaa new-model
    • ip device-tracking
  6. Question 6 · 1

    What is a characteristic of Firepower NGIPS inline deployment mode?

    Choose one answer.

    • ASA with Firepower module cannot be deployed
    • It cannot take actions such as blocking traffic
    • It is out-of-band from traffic
    • It must have inline interface pairs configured
  7. Question 7 · 1

    A mall provides security services to customers with a shared appliance. The mall wants separation of management on the shared appliance. Which ASA deployment mode meets these needs?

    Choose one answer.

    • routed mode
    • multiple zone mode
    • multiple context mode
    • transparent mode
  8. Question 8 · 1

    What is managed by Cisco Security Manager?

    Choose one answer.

    • Cisco WLC
    • Cisco ESA
    • Cisco WSA
    • Cisco ASA
  9. Question 9 · 1

    An organization is trying to improve their Defense in Depth by blocking malicious destinations prior to a connection being established. The solution must be able to block certain applications from being used within the network. Which product should be used to accomplish this goal?

    Choose one answer.

    • Cisco Firepower
    • Cisco Umbrella
    • Cisco ISE
    • Cisco AMP
  10. Question 10 · 1

    An engineer notices traffic interruptions on the network. Upon further investigation, it is learned that broadcast packets have been flooding the network. What must be configured, based on a predefined threshold, to address this issue?

    Choose one answer.

    • Storm Control
    • embedded event monitoring
    • access control lists
    • Bridge Protocol Data Unit guard
  11. Question 11 · 1

    What is a feature of Cisco NetFlow Secure Event Logging for Cisco ASAs?

    Choose one answer.

    • Multiple NetFlow collectors are supported.
    • Advanced NetFlow v9 templates and legacy v5 formatting are supported.
    • Secure NetFlow connectors are optimized for Cisco Prime Infrastructure
    • Flow-create events are delayed.
  12. Question 12 · 1

    What is a key difference between Cisco Firepower and Cisco ASA?

    Choose one answer.

    • Cisco Firepower provides identity based access control while Cisco ASA does not.
    • Cisco AS provides access control while Cisco Firepower does not.
    • Cisco ASA provides SSL inspection while Cisco Firepower does not.
    • Cisco Firepower natively provides intrusion prevention capabilities while Cisco ASA does not.
  13. Question 13 · 1

    Which two mechanisms are used to control phishing attacks? (Choose two.)

    Choose all answers that apply.

    • Enable browser alerts for fraudulent websites.
    • Define security group memberships.
    • Revoke expired CRL of the websites.
    • Use antispyware software.
    • Implement email filtering techniques.
  14. Question 14 · 1

    DRAG DROP - Drag and drop the suspicious patterns for the Cisco Tetration platform from the left onto the correct definitions on the right. Select and Place:

    Match each destination with an option.

    Question illustration 1

    Tetration platform learns the normal behavior of users.

    • privilege escalation
    • user login suspicious behavior
    • interesting file access
    • file access from a different user

    Tetration platform is armed to look at sensitive files

    • privilege escalation
    • user login suspicious behavior
    • interesting file access
    • file access from a different user

    Tetration platform watches user access failures and methods

    • privilege escalation
    • user login suspicious behavior
    • interesting file access
    • file access from a different user

    Tetration platform watches for movement in the process lineage tree.

    • privilege escalation
    • user login suspicious behavior
    • interesting file access
    • file access from a different user
  15. Question 15 · 1

    What is a benefit of using Cisco FMC over Cisco ASDM?

    Choose one answer.

    • Cisco FMC uses Java while Cisco ASDM uses HTML5.
    • Cisco FMC provides centralized management while Cisco ASDM does not.
    • Cisco FMC supports pushing configurations to devices while Cisco ASDM does not.
    • Cisco FMC supports all firewall products whereas Cisco ASDM only supports Cisco ASA devices.

Each purchase applies to this certification. Prices are one-time payments, not monthly subscriptions.

Starter

$29 USD one time

Full access to one certification's question bank in standard practice mode for 60 days.

  • Full question bank for one certification
  • 60 days of access
  • Standard practice mode
  • Question notes and community discussions
  • Attempt scores and answer review

Professional

$49 USD one time

Full access to one certification's question bank, custom test controls and advanced analytics for 60 days.

  • Custom test builder
  • Timers and question selection
  • Randomized question and answer order
  • Advanced performance and weak-question analytics
  • Priority customer support
Try 15 questions free