Free 350-701 Exam Braindumps (page: 66)

Page 66 of 153

What does Cisco AMP for Endpoints use to help an organization detect different families of malware?

  1. Ethos Engine to perform fuzzy fingerprinting
  2. Tetra Engine to detect malware when me endpoint is connected to the cloud
  3. Clam AV Engine to perform email scanning
  4. Spero Engine with machine learning to perform dynamic analysis

Answer(s): A

Explanation:

ETHOS is the Cisco file grouping engine. It allows us to group families of files together so if we see variants of a malware, we mark the ETHOS hash as malicious and whole families of malware are instantly detected.


Reference:

https://docs.amp.cisco.com/AMP%20for%20Endpoints%20User%20Guide.pdf ETHOS = Fuzzy Fingerprinting using static/passive heuristics
https://www.ciscolive.com/c/dam/r/ciscolive/emea/docs/2016/pdf/BRKSEC-2139.pdf



What are two characteristics of Cisco DNA Center APIs? (Choose two)

  1. Postman is required to utilize Cisco DNA Center API calls.
  2. They do not support Python scripts.
  3. They are Cisco proprietary.
  4. They quickly provision new devices.
  5. They view the overall health of the network

Answer(s): D,E



What is a benefit of conducting device compliance checks?

  1. It indicates what type of operating system is connecting to the network.
  2. It validates if anti-virus software is installed.
  3. It scans endpoints to determine if malicious activity is taking place.
  4. It detects email phishing attacks.

Answer(s): B



In which two ways does Easy Connect help control network access when used with Cisco TrustSec? (Choose two)

  1. It allows multiple security products to share information and work together to enhance security posture in the network.
  2. It creates a dashboard in Cisco ISE that provides full visibility of all connected endpoints.
  3. It allows for the assignment of Security Group Tags and does not require 802.1x to be configured on the switch or the endpoint.
  4. It integrates with third-party products to provide better visibility throughout the network.
  5. It allows for managed endpoints that authenticate to AD to be mapped to Security Groups (PassiveID).

Answer(s): C,E

Explanation:

Easy Connect simplifies network access control and segmentation by allowing the assignment of Security Group Tags to endpoints without requiring 802.1X on those endpoints, whether using wired or wireless connectivity.


Reference:

https://www.cisco.com/c/dam/en/us/solutions/collateral/enterprise- networks/trustsec/trustsec-witheasy-connect-configuration-guide.pdf



Page 66 of 153



Post your Comments and Discuss Cisco® 350-701 exam with other Community members:

David A commented on January 16, 2024
Good Colombia
Anonymous
upvote

Kim commented on May 25, 2023
I just purchased and downloaded my files. Everything looks good so far.
UNITED STATES
upvote