Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
CISCO

Cisco Certified Support Technician (CCST) Cybersecurity

100-160100-160 CCST Cybersecurity

The Cisco Certified Support Technician (CCST) Cybersecurity certification validates your entry-level skills and knowledge of core security concepts, including security principles, network security, endpoint security, vulnerability assessment, risk management, and incident handling. It is designed for individuals starting a career in cybersecurity, such as cybersecurity technicians, analysts, or Tier 1 help desk support. Earning this credential is also a first step toward the CyberOps Associate certification, giving you a clear path to advance in the security field.

942 practice questions · Updated 2025-01-01

5Domains
23Objectives
155Concepts
942Questions

100-160 Curriculum

Every domain, objective, and concept the 100-160 exam measures.

Define essential security principles

11 concepts · 46 questions
  1. Vulnerabilities
  2. Threats
  3. Exploits
  4. Risks
  5. Attack Vectors
  6. Hardening
  7. Defense-in-Depth
  8. Confidentiality, Integrity, and Availability (CIA)
  9. Types of Attackers
  10. Reasons for Attacks
  11. Code of Ethics
  1. Malware types and behaviors
  2. Ransomware attack mechanisms
  3. Denial of Service (DoS) and Distributed Denial of Service (DDoS) attacks
  4. Botnets and their role in attacks
  5. Social engineering attack types
  6. Physical attacks and security measures
  7. Man-in-the-Middle (MitM) attacks
  8. IoT vulnerabilities and risks
  9. Insider threats and indicators
  10. Advanced Persistent Threats (APTs)

Explain access management principles

4 concepts · 38 questions
  1. AAA framework
  2. RADIUS protocol
  3. Multifactor authentication (MFA)
  4. Password policies
  1. Types of encryption
  2. Hashing
  3. Certificates
  4. Public Key Infrastructure (PKI)
  5. Strong vs. weak encryption algorithms
  6. States of data and appropriate encryption
  7. Protocols that use encryption

  1. TCP vulnerabilities
  2. UDP vulnerabilities
  3. HTTP vulnerabilities
  4. ARP vulnerabilities
  5. ICMP vulnerabilities
  6. DHCP vulnerabilities
  7. DNS vulnerabilities
  1. IPv4 Addressing Fundamentals
  2. IPv6 Addressing Fundamentals
  3. MAC Addresses and Their Role
  4. Network Segmentation Concepts
  5. CIDR Notation and Subnetting
  6. NAT and Its Security Implications
  7. Public vs. Private Networks
  1. Network Security Architecture
  2. DMZ (Demilitarized Zone)
  3. Virtualization
  4. Cloud Security
  5. Honeypot
  6. Proxy Server
  7. Intrusion Detection System (IDS)
  8. Intrusion Prevention System (IPS)

Set up a secure wireless SoHo network

3 concepts · 27 questions
  1. MAC Address Filtering
  2. Encryption Standards and Protocols
  3. SSID Configuration

Implement secure access technologies

4 concepts · 31 questions
  1. Access Control Lists (ACLs)
  2. Firewalls
  3. Virtual Private Networks (VPNs)
  4. Network Access Control (NAC)

  1. OS Security Features Overview
  2. Windows Defender
  3. Host-Based Firewalls
  4. CLI and PowerShell
  5. File and Directory Permissions
  6. Privilege Escalation
  1. Hardware Inventory
  2. Software Inventory
  3. Program Deployment
  4. Data Backups
  5. Regulatory Compliance
  6. BYOD Device Management
  7. Data Encryption on BYOD
  8. App Distribution on BYOD
  9. Configuration Management

Implement software and hardware updates

5 concepts · 28 questions
  1. Windows Update
  2. Application updates
  3. Device drivers
  4. Firmware updates
  5. Patch management

Interpret system logs

6 concepts · 39 questions
  1. Event Viewer basics
  2. Audit logs
  3. System logs
  4. Application logs
  5. Syslog
  6. Log analysis for anomaly identification
  1. Endpoint scanning methods
  2. Interpreting scan logs
  3. Malware remediation steps
  4. Post-remediation verification

Explain vulnerability management

7 concepts · 49 questions
  1. Vulnerability identification
  2. Vulnerability management lifecycle
  3. Vulnerability mitigation strategies
  4. Active reconnaissance
  5. Passive reconnaissance
  6. Port scanning
  7. Automation in vulnerability testing
  1. Vulnerability Databases
  2. Industry-Standard Vulnerability Assessment Tools
  3. Common Vulnerabilities and Exposures (CVEs)
  4. Cybersecurity Reports and News
  5. Subscription Services and Collective Intelligence
  6. Ad Hoc Threat Intelligence
  7. Automated Threat Intelligence
  8. Proactive Documentation and Communication
  9. Securing Documentation
  10. Sharing and Updating Documentation

Explain risk management

7 concepts · 41 questions
  1. Vulnerability vs. Risk
  2. Risk Ranking
  3. Approaches to Risk Management
  4. Risk Mitigation Strategies
  5. Levels of Risk
  6. Risks Associated with Data Types and Classifications
  7. Security Assessments of IT Systems
  1. Natural and human-caused disasters
  2. Disaster Recovery Plan (DRP)
  3. Business Continuity Plan (BCP)
  4. Differences between DRP and BCP
  5. Backup strategies
  6. Detective disaster recovery controls
  7. Preventive disaster recovery controls
  8. Corrective disaster recovery controls

  1. SIEM fundamentals
  2. SOAR fundamentals
  3. Monitoring network data
  4. Analyzing log file entries
  5. Identifying suspicious events
  6. Escalation criteria and process
  1. Cyber Kill Chain
  2. MITRE ATT&CK Matrix
  3. Diamond Model of Intrusion Analysis
  4. Tactics, Techniques, and Procedures (TTPs)
  5. Sources of Digital Evidence (Artifacts)
  6. Preserving Digital Evidence
  7. Chain of Custody
  1. Overview of compliance frameworks
  2. GDPR reporting and notification requirements
  3. HIPAA reporting and notification requirements
  4. PCI-DSS reporting and notification requirements
  5. FERPA reporting and notification requirements
  6. FISMA reporting and notification requirements
  7. Impact of frameworks on incident handling processes
  8. Coordination of multiple frameworks
  1. Incident Response Policy
  2. Incident Response Plan
  3. Incident Response Procedures
  4. NIST Incident Response Lifecycle
  5. Preparation Stage
  6. Detection and Analysis Stage
  7. Containment, Eradication, and Recovery Stage
  8. Post-Incident Activity Stage
Ready to practice?Test your knowledge with exam-style questions or take an intelligent quiz tailored to your level.

Percentages reflect share of the current practice bank, not official exam weightings — no structured per-skill weight is published for 100-160, so none is invented.