Free 200-201 Exam Braindumps (page: 37)

Page 37 of 66

A security expert is working on a copy of the evidence, an ISO file that is saved in CDFS format.
Which type of evidence is this file?

  1. CD data copy prepared in Windows
  2. CD data copy prepared in Mac-based system
  3. CD data copy prepared in Linux system
  4. CD data copy prepared in Android-based system

Answer(s): A



Which two elements of the incident response process are stated in NIST Special Publication 800-61 r2? (Choose two.)

  1. detection and analysis
  2. post-incident activity
  3. vulnerability management
  4. risk assessment
  5. vulnerability scoring

Answer(s): A,B


Reference:

https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-61r2.pdf



DRAG DROP
Drag and drop the definition from the left onto the phase on the right to classify intrusion events according to the Cyber Kill Chain model.

  1. See Explanation section for answer.

Answer(s): A

Explanation:



The targeted Environment is taken advantage of triggering the threat actor's code Installation - Backdoor is placed on the victim system allowing the threat actor to maintain the

persistence.
Command and Control - An outbound connection is established to an Internet-based controller server.
Actions and Objectives - The threat actor takes actions to violate data integrity and availability



Refer to the exhibit.



What does this output indicate?

  1. HTTPS ports are open on the server.
  2. SMB ports are closed on the server.
  3. FTP ports are open on the server.
  4. Email ports are closed on the server.

Answer(s): D



Page 37 of 66



Post your Comments and Discuss Cisco® 200-201 exam with other Community members:

AEB commented on December 11, 2024
The breadth of knowledge for this exam is large. It doesn't seem possible to learn everything on it for an associate level exam.
UNITED STATES
upvote

Bio commented on September 05, 2023
200-201 CBROPS 092023 - Exam still 75% to 80% valid. Suggest to those who wants to pass to study this, along with netacads, and review quizlets to ensure you pass.
GERMANY
upvote

AB commented on August 21, 2023
200-201 is still good. passed Aug 14
UNITED STATES
upvote