Cisco 200-201 Practice Test - Questions Answers, Page 20

List of questions
Question 191

What is a difference between signature-based and behavior-based detection?
Question 192

Refer to the exhibit.
An engineer received an event log file to review. Which technology generated the log?
Question 193

What is the difference between inline traffic interrogation and traffic mirroring?
Question 194

Refer to the exhibit.
A company employee is connecting to mail google.com from an endpoint device. The website is loaded but with an error. What is occurring?
Question 195

An analyst is using the SIEM platform and must extract a custom property from a Cisco device and capture the phrase, 'File: Clean.' Which regex must the analyst import?
Question 196

What describes the concept of data consistently and readily being accessible for legitimate users?
Question 197

Refer to the exhibit.
Which frame numbers contain a file that is extractable via TCP stream within Wireshark?
Question 198

Refer to the exhibit.
Which stakeholders must be involved when a company workstation is compromised?
Question 199

How does an attack surface differ from an attack vector?
Question 200

How does TOR alter data content during transit?
Question