Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified CyberOps Associate

Domain 1Objective 5

1.5 Describe the Principles of the Defense-In-Depth Strategy 200-201 Practice Questions (Page 4)

Part of the 1.0 Security Concepts domain, which accounts for 20% of the 200-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–1 from this objective — we provide 47 practice questions to prepare you well beyond it. (estimate)

47questions here
10free pages
7concepts
20%of the exam

Questions 16–20

  1. 16application · medium

    A security analyst is reviewing the company's security architecture and notices that all network traffic is inspected by a single firewall, but there is no internal segmentation or host-based protection. Which principle of defense-in-depth is being violated?

    Select an answer first
  2. 17application · medium

    A company is considering implementing a defense-in-depth strategy. The security team is excited, but the operations team is concerned about the operational burden. Which limitation of defense-in-depth should the security team acknowledge?

    Select an answer first
  3. 18expert · hard

    A security architect is designing a defense-in-depth strategy for a financial institution. The architect must balance the need for strong security with the operational cost of managing multiple controls. The institution has a limited security team and a tight budget. Which approach best balances security and operational efficiency?

    Select an answer first
  4. 19expert · hard

    A company is experiencing an increase in phishing attacks that are bypassing the email gateway. The security team wants to apply defense-in-depth to reduce the impact of these attacks. Which combination of controls is most effective?

    Select an answer first
  5. 20application · medium

    A development team is deploying a customer-facing web application that handles sensitive personal data. The security team wants to ensure that even if an attacker exploits a vulnerability in the application, the data remains protected. Which combination of application and data security controls best supports this goal?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “200-201” is a trademark of its owner, used for identification only.