Free 200-201 Exam Braindumps (page: 3)

Page 3 of 66

Which process is used when IPS events are removed to improve data integrity?

  1. data availability
  2. data normalization
  3. data signature
  4. data protection

Answer(s): B



An analyst is investigating an incident in a SOC environment.
Which method is used to identify a session from a group of logs?

  1. sequence numbers
  2. IP identifier
  3. 5-tuple
  4. timestamps

Answer(s): C



What is a difference between SOAR and SIEM?

  1. SOAR platforms are used for threat and vulnerability management, but SIEM applications are not
  2. SIEM applications are used for threat and vulnerability management, but SOAR platforms are not
  3. SOAR receives information from a single platform and delivers it to a SIEM
  4. SIEM receives information from a single platform and delivers it to a SOAR

Answer(s): A



What is the difference between mandatory access control (MAC) and discretionary access control (DAC)?

  1. MAC is controlled by the discretion of the owner and DAC is controlled by an administrator
  2. MAC is the strictest of all levels of control and DAC is object-based access
  3. DAC is controlled by the operating system and MAC is controlled by an administrator
  4. DAC is the strictest of all levels of control and MAC is object-based access

Answer(s): B



Page 3 of 66



Post your Comments and Discuss Cisco® 200-201 exam with other Community members:

AEB commented on December 11, 2024
The breadth of knowledge for this exam is large. It doesn't seem possible to learn everything on it for an associate level exam.
UNITED STATES
upvote

Bio commented on September 05, 2023
200-201 CBROPS 092023 - Exam still 75% to 80% valid. Suggest to those who wants to pass to study this, along with netacads, and review quizlets to ensure you pass.
GERMANY
upvote

AB commented on August 21, 2023
200-201 is still good. passed Aug 14
UNITED STATES
upvote