
CiscoCertified CyberOps Associate
Domain 2Objective 3
2.3 Describe the Impact of These Technologies on Data Visibility 200-201 Practice Questions (Page 7)
Part of the 2.0 Security Monitoring domain, which accounts for 25% of the 200-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~13–20 in this domain), expect 1–2 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
8concepts
25%of the exam
Questions 31–35
- 31
A security analyst is investigating a malware infection that is using a custom tunneling protocol over port 443 to communicate with a command-and-control (C2) server. The analyst has full packet captures from the network perimeter. What is the primary limitation the analyst will face when trying to inspect the C2 traffic?
Select an answer first - 32
A security analyst is investigating a web application attack. The application is behind a load balancer that distributes traffic across three web servers. The analyst has full packet captures from the load balancer's external interface. What is the primary challenge the analyst faces when correlating the attack traffic to a specific web server?
Select an answer first - 33
What is the primary effect of tunneling on data visibility for network monitoring tools?
Select an answer first - 34
What is a key characteristic of peer-to-peer (P2P) traffic that makes it challenging for security monitoring?
Select an answer first - 35
What is the primary impact of encapsulation on data visibility for security monitoring?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “200-201” is a trademark of its owner, used for identification only.