Cisco 200-201 Practice Test - Questions Answers, Page 14

List of questions
Question 131

Which action should be taken if the system is overwhelmed with alerts when false positives and false negatives are compared?
Question 132

What is the impact of false positive alerts on business compared to true positive?
Question 133

An engineer needs to fetch logs from a proxy server and generate actual events according to the data received. Which technology should the engineer use to accomplish this task?
Question 134

Refer to the exhibit.
Which technology generates this log?
Question 135

Which filter allows an engineer to filter traffic in Wireshark to further analyze the PCAP file by only showing the traffic for LAN 10.11.x.x, between workstations and servers without the Internet?
Question 136

Which tool provides a full packet capture from network traffic?
Question 137

A company is using several network applications that require high availability and responsiveness, such that milliseconds of latency on network traffic is not acceptable. An engineer needs to analyze the network and identify ways to improve traffic movement to minimize delays. Which information must the engineer obtain for this analysis?
Question 138

Refer to the exhibit.
What is depicted in the exhibit?
Question 139

Which technology should be used to implement a solution that makes routing decisions based on HTTP header, uniform resource identifier, and SSL session ID attributes?
Question 140

An organization has recently adjusted its security stance in response to online threats made by a known hacktivist group.
What is the initial event called in the NIST SP800-61?
Question