Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Pass the Cisco CCNP Security 300-740 Questions and answers with ValidTests

Exam 300-740 All Questions
Exam 300-740 Premium Access

View all detail and faqs for the 300-740 exam

Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions
Questions # 11:

What is a crucial component in the MITRE ATT&CK framework?

Options:

A.

Techniques for accessing credentials

B.

Incident response workflow

C.

Blueprint for a secure network architecture

D.

Best practices for user access management

Expert Solution
Questions # 12:

Question # 12

Refer to the exhibit. An engineer configured a default segmentation policy in Cisco Secure Workload to block SMTP traffic. During testing, it is observed that the SMTP traffic is still allowed. Which action must the engineer take to complete the configuration?

Options:

A.

Add "port": [25, 25] to _rootScope

B.

Add _SMTPScope to provider_filter_ref

C.

Add "port": [25, 25] to _params

D.

Change consumer_filter_ref to: _SMTPScope

Expert Solution
Questions # 13:

Question # 13

Refer to the exhibit. A security engineer must configure a posture policy in Cisco ISE to ensure that employee laptops have a critical patch for WannaCry installed before they can access the network. Which posture condition must the engineer configure?

Options:

A.

Patch Management Condition

B.

File Condition

C.

Anti-Virus Condition

D.

Anti-Malware Condition

Expert Solution
Questions # 14:

Which types of algorithm does a web application firewall use for zero-day DDoS protection?

Options:

A.

Reactive and heuristic-based

B.

Stochastic and event-based

C.

Correlative and feedback-based

D.

Adaptive and behavioral-based

Expert Solution
Questions # 15:

Question # 15

Question # 15

Refer to the exhibit. An engineer must create a firewall policy to allow web server communication only. The indicated firewall policy was applied; however, a recent audit requires that all firewall policies be optimized. Which set of rules must be deleted?

Options:

A.

Rules 3 and 4

B.

Rules 2 to 4

C.

Rules 2 to 5

D.

Rules 1 and 5

Expert Solution
Questions # 16:

How does Cisco XDR perform threat prioritization by using its visibility across multiple platforms?

Options:

A.

By assigning priority based on the detection platform

B.

By correlating detection risk and asset value at risk

C.

By prioritizing threats based on their frequency across platforms

D.

By using a fixed priority system for all platforms

Expert Solution
Questions # 17:

Which method is used by a Cisco XDR solution to prioritize actions?

Options:

A.

Updating antivirus signatures

B.

Monitoring endpoint activity

C.

Leveraging AI and machine learning

D.

Analyzing network traffic patterns

Expert Solution
Questions # 18:

A security analyst detects an employee endpoint making connections to a malicious IP on the internet and downloaded a file named Test0511127691C.pdf. The analyst discovers the machine is infected by trojan malware. What must the analyst do to mitigate the threat using Cisco Secure Endpoint?

Options:

A.

Identify the malicious IPs and place them in a blocked list

B.

Create an IP Block list and add the IP address of the affected endpoint

C.

Enable scheduled scans to detect and block the executable files

D.

Start isolation of the machine on the Computers tab

Expert Solution
Viewing page 2 out of 2 pages
Viewing questions 11-20 out of questions