Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified CyberOps Associate

Domain 2Objective 10

2.10 Describe the Impact of Certificates on Security (includes PKI, Public/private Crossing the Network, Asymmetric/symmetric) 200-201 Practice Questions (Page 1)

Part of the 2.0 Security Monitoring domain, which accounts for 25% of the 200-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~13–20 in this domain), expect 1–2 from this objective — we provide 36 practice questions to prepare you well beyond it. (estimate)

36questions here
8free pages
5concepts
25%of the exam

Questions 1–5

  1. 1expert · hard

    A company's internal CA issues a certificate to a web server. Later, the server's private key is suspected of being compromised. The security team revokes the certificate and publishes a CRL. However, some clients are still connecting to the server using the revoked certificate. Which factor most likely explains this?

    Select an answer first
  2. 2application · medium

    A developer is building a mobile app that needs to securely communicate with a backend server. The app will be used by many users, and the developer wants to ensure that the server is authenticated and that the data exchanged is encrypted. The developer is considering using a pre-shared key (PSK) for all users. What is the main security drawback of this approach compared to using certificates?

    Select an answer first
  3. 3expert · hard

    A security architect is designing a secure communication system for a large enterprise. The system must support many users and high-volume data transfer. The architect is considering using only asymmetric encryption for all data. What is the primary reason this is not a good design, and what is the recommended alternative?

    Select an answer first
  4. 4application · medium

    A security administrator is configuring a new internal CA. The administrator wants to ensure that if a subordinate CA is compromised, the impact is limited and the root CA key remains secure. Which two practices should be implemented?

    Select an answer first
  5. 5application · medium

    A company's security team discovers that a recently departed employee's client certificate is still valid and can be used to authenticate to the corporate VPN. The certificate was issued by the company's internal CA with a validity period of two years. Which action should the security team take to immediately prevent this certificate from being used?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “200-201” is a trademark of its owner, used for identification only.