
CiscoCertified CyberOps Associate
Domain 1Objective 3
1.3 Describe Security Terms 200-201 Practice Questions (Page 8)
Part of the 1.0 Security Concepts domain, which accounts for 20% of the 200-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–1 from this objective — we provide 51 practice questions to prepare you well beyond it. (estimate)
51questions here
11free pages
9concepts
20%of the exam
Questions 36–40
- 36
A security analyst notices that the organization's EDR solution has not detected any malware in the past six months, despite industry reports of a new campaign using fileless techniques. The analyst suspects the EDR may be missing stealthy threats. Which action best aligns with the concept of threat hunting?
Select an answer first - 37
A malware analyst is reverse engineering a packed binary that uses anti-debugging techniques. The analyst needs to unpack the binary and understand its behavior, but the binary crashes when run under a standard debugger. Which approach is most likely to succeed?
Select an answer first - 38
A security architect is assessing the risk of a new internet-facing application that stores sensitive customer data. The architect has limited budget and must choose between investing in a WAF or conducting a thorough threat modeling exercise. The application is developed in-house and has a history of business logic flaws. Which decision best balances risk and budget?
Select an answer first - 39
How does run book automation improve incident response efficiency?
Select an answer first - 40
What is the primary purpose of threat modeling?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “200-201” is a trademark of its owner, used for identification only.