Cisco 200-201 Exam
Understanding Cisco Cybersecurity Operations Fundamentals (CBROPS) (Page 5 )

Updated On: 12-Feb-2026

What is the function of a command and control server?

  1. It enumerates open ports on a network device
  2. It drops secondary payload into malware
  3. It is used to regain control of the network after a compromise
  4. It sends instruction to a compromised system

Answer(s): D



What is the difference between deep packet inspection and stateful inspection?

  1. Deep packet inspection is more secure than stateful inspection on Layer 4
  2. Stateful inspection verifies contents at Layer 4 and deep packet inspection verifies connection at Layer 7
  3. Stateful inspection is more secure than deep packet inspection on Layer 7
  4. Deep packet inspection allows visibility on Layer 7 and stateful inspection allows visibility on Layer 4

Answer(s): D



Which evasion technique is a function of ransomware?

  1. extended sleep calls
  2. encryption
  3. resource exhaustion
  4. encoding

Answer(s): B



Refer to the exhibit.


Which two elements in the table are parts of the 5-tuple? (Choose two.)

  1. First Packet
  2. Initiator User
  3. Ingress Security Zone
  4. Source Port
  5. Initiator IP

Answer(s): D,E



DRAG DROP (Drag and Drop is not supported)
Drag and drop the security concept on the left onto the example of that concept on the right.
Select and Place:

  1. See Explanation section for answer.

Answer(s): A

Explanation:






Post your Comments and Discuss Cisco 200-201 exam prep with other Community members:

Join the 200-201 Discussion