Cisco 200-201 Practice Test - Questions Answers, Page 14
List of questions
Question 131
Which action should be taken if the system is overwhelmed with alerts when false positives and false negatives are compared?
Question 132
What is the impact of false positive alerts on business compared to true positive?
Question 133
An engineer needs to fetch logs from a proxy server and generate actual events according to the data received. Which technology should the engineer use to accomplish this task?
Question 134
Refer to the exhibit.
Which technology generates this log?
Question 135
Which filter allows an engineer to filter traffic in Wireshark to further analyze the PCAP file by only showing the traffic for LAN 10.11.x.x, between workstations and servers without the Internet?
Question 136
Which tool provides a full packet capture from network traffic?
Question 137
A company is using several network applications that require high availability and responsiveness, such that milliseconds of latency on network traffic is not acceptable. An engineer needs to analyze the network and identify ways to improve traffic movement to minimize delays. Which information must the engineer obtain for this analysis?
Question 138
Refer to the exhibit.
What is depicted in the exhibit?
Question 139
Which technology should be used to implement a solution that makes routing decisions based on HTTP header, uniform resource identifier, and SSL session ID attributes?
Question 140
An organization has recently adjusted its security stance in response to online threats made by a known hacktivist group.
What is the initial event called in the NIST SP800-61?
Question