Here are all the actual test exam dumps for IT exams. Most people prepare for the actual exams with our test dumps to pass their exams. So it's critical to choose and actual test pdf to succeed.

[Q51-Q72] Pass 350-201 Exam in First Attempt Guaranteed 2024 Dumps!

Share

Pass 350-201 Exam in First Attempt Guaranteed 2024 Dumps!

350-201 Dumps Full Questions - Exam Study Guide

NEW QUESTION # 51
A European-based advertisement company collects tracking information from partner websites and stores it on a local server to provide tailored ads. Which standard must the company follow to safeguard the resting data?

  • A. HIPAA
  • B. Sarbanes-Oxley
  • C. GDPR
  • D. PCI-DSS

Answer: C


NEW QUESTION # 52
Drag and drop the components from the left onto the phases of the CI/CD pipeline on the right.

Answer:

Explanation:

Reference:
https://www.densify.com/resources/continuous-integration-delivery-phases


NEW QUESTION # 53
Where do threat intelligence tools search for data to identify potential malicious IP addresses, domain names, and URLs?

  • A. customer data
  • B. internal cloud
  • C. Internet
  • D. internal database

Answer: C


NEW QUESTION # 54
Drag and drop the type of attacks from the left onto the cyber kill chain stages at which the attacks are seen on the right.

Answer:

Explanation:


NEW QUESTION # 55
Refer to the exhibit.

Rapid Threat Containment using Cisco Secure Network Analytics (Stealthwatch) and ISE detects the threat of malware-infected 802.1x authenticated endpoints and places that endpoint into a quarantine VLAN using Adaptive Network Control policy. Which method was used to signal ISE to quarantine the endpoints?

  • A. syslog
  • B. pxGrid
  • C. REST API
  • D. SNMP

Answer: C


NEW QUESTION # 56
Refer to the exhibit.

An organization is using an internal application for printing documents that requires a separate registration on the website. The application allows format-free user creation, and users must match these required conditions to comply with the company's user creation policy:
minimum length: 3
usernames can only use letters, numbers, dots, and underscores
usernames cannot begin with a number
The application administrator has to manually change and track these daily to ensure compliance. An engineer is tasked to implement a script to automate the process according to the company user creation policy. The engineer implemented this piece of code within the application, but users are still able to create format-free usernames. Which change is needed to apply the restrictions?

  • A. modify code to return error on restrictions def return false_user(username, minlen)
  • B. modify code to force the restrictions, def force_user(username, minlen)
  • C. validate the restrictions, def validate_user(username, minlen)
  • D. automate the restrictions def automate_user(username, minlen)

Answer: D


NEW QUESTION # 57
An organization is using a PKI management server and a SOAR platform to manage the certificate lifecycle.
The SOAR platform queries a certificate management tool to check all endpoints for SSL certificates that have either expired or are nearing expiration. Engineers are struggling to manage problematic certificates outside of PKI management since deploying certificates and tracking them requires searching server owners manually.
Which action will improve workflow automation?

  • A. Integrate a PKI solution within SOAR to create certificates within the SOAR engines to track, update, and monitor problematic certificates.
  • B. Integrate a SOAR solution with Active Directory to pull server owner details from the AD and send an automated email for problematic certificates requesting updates.
  • C. Implement a new workflow within SOAR to create tickets in the incident response system, assign problematic certificate update requests to server owners, and register change requests.
  • D. Implement a new workflow for SOAR to fetch a report of assets that are outside of the PKI zone, sort assets by certification management leads and automate alerts that updates are needed.

Answer: D


NEW QUESTION # 58
Drag and drop the mitigation steps from the left onto the vulnerabilities they mitigate on the right.

Answer:

Explanation:


NEW QUESTION # 59
An engineer receives an incident ticket with hundreds of intrusion alerts that require investigation. An analysis of the incident log shows that the alerts are from trusted IP addresses and internal devices. The final incident report stated that these alerts were false positives and that no intrusions were detected. What action should be taken to harden the network?

  • A. Move the IPS to before the firewall facing the outside network
  • B. Move the IPS to after the firewall facing the internal network
  • C. Configure reverse port forwarding on the IPS
  • D. Configure the proxy service on the IPS

Answer: D


NEW QUESTION # 60
A security architect is working in a processing center and must implement a DLP solution to detect and prevent any type of copy and paste attempts of sensitive data within unapproved applications and removable devices.
Which technical architecture must be used?

  • A. DLP for removable data
  • B. DLP for data in motion
  • C. DLP for data at rest
  • D. DLP for data in use

Answer: D

Explanation:
Explanation/Reference: https://www.endpointprotector.com/blog/what-is-data-loss-prevention-dlp/


NEW QUESTION # 61

Refer to the exhibit. An engineer received a report that an attacker has compromised a workstation and gained access to sensitive customer data from the network using insecure protocols. Which action prevents this type of attack in the future?

  • A. Deploy IDS within sensitive areas and continuously update signatures
  • B. Use syslog to gather data from multiple sources and detect intrusion logs for timely responses
  • C. Deploy a SOAR solution and correlate log alerts from customer zones
  • D. Use VLANs to segregate zones and the firewall to allow only required services and secured protocols

Answer: D


NEW QUESTION # 62
An engineer has created a bash script to automate a complicated process. During script execution, this error occurs: permission denied. Which command must be added to execute this script?

  • A. chroot ex.sh
  • B. sh ex.sh
  • C. chmod +x ex.sh
  • D. source ex.sh

Answer: C


NEW QUESTION # 63
What is a limitation of cyber security risk insurance?

  • A. It does not cover the costs to hire forensics experts to analyze the cyber attack
  • B. It does not cover the costs of damage done by third parties as a result of a cyber attack
  • C. It does not cover the costs to restore stolen identities as a result of a cyber attack
  • D. It does not cover the costs to hire a public relations company to help deal with a cyber attack

Answer: C


NEW QUESTION # 64
What is the impact of hardening machine images for deployment?

  • A. reduces the steps needed to mitigate threats
  • B. reduces the attack surface
  • C. increases the availability of threat alerts
  • D. increases the speed of patch deployment

Answer: B


NEW QUESTION # 65
An organization installed a new application server for IP phones. An automated process fetched user credentials from the Active Directory server, and the application will have access to on-premises and cloud services. Which security threat should be mitigated first?

  • A. aligning access control policies
  • B. exfiltration during data transfer
  • C. attack using default accounts
  • D. data exposure from backups

Answer: B


NEW QUESTION # 66
What is a principle of Infrastructure as Code?

  • A. System downtime is grouped and scheduled across the infrastructure
  • B. Comprehensive initial designs support robust systems
  • C. Scripts and manual configurations work together to ensure repeatable routines
  • D. System maintenance is delegated to software systems

Answer: B


NEW QUESTION # 67
Refer to the exhibit.

An engineer received multiple reports from employees unable to log into systems with the error: The Group Policy Client service failed to logon - Access is denied. Through further analysis, the engineer discovered several unexpected modifications to system settings. Which type of breach is occurring?

  • A. denial-of-service
  • B. elevation of privileges
  • C. malware break
  • D. data theft

Answer: B


NEW QUESTION # 68
According to GDPR, what should be done with data to ensure its confidentiality, integrity, and availability?

  • A. Conduct a data protection impact assessment
  • B. Perform a vulnerability assessment
  • C. Conduct penetration testing
  • D. Perform awareness testing

Answer: A


NEW QUESTION # 69
Drag and drop the actions below the image onto the boxes in the image for the actions that should be taken during this playbook step. Not all options are used.

Answer:

Explanation:


NEW QUESTION # 70
Refer to the exhibit.

A threat actor behind a single computer exploited a cloud-based application by sending multiple concurrent API requests. These requests made the application unresponsive. Which solution protects the application from being overloaded and ensures more equitable application access across the end-user community?

  • A. Limit the number of API calls that a single client is allowed to make
  • B. Reduce the amount of data that can be fetched from the total pool of active clients that call the API
  • C. Increase the application cache of the total pool of active clients that call the API
  • D. Add restrictions on the edge router on how often a single client can access the API

Answer: A


NEW QUESTION # 71
What is the HTTP response code when the REST API information requested by the authenticated user cannot be found?

  • A. 0
  • B. 1
  • C. 2
  • D. 3
  • E. 4

Answer: E


NEW QUESTION # 72
......

CyberOps Professional Free Certification Exam Material from Actual4test with 141 Questions: https://examtorrent.actual4test.com/350-201_examcollection.html