Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified Network Associate (CCNA)

Domain 5Objective 1

5.1 Define Key Security Concepts (threats, Vulnerabilities, Exploits, and Mitigation Techniques) 200-301 Practice Questions (Page 1)

Part of the Security Fundamentals domain, which accounts for 15% of the 200-301 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–12 in this domain), expect 1–1 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)

30questions here
6free pages
4concepts
15%of the exam

Questions 1–5

  1. 1application · medium

    An employee receives an email that appears to be from the CEO, urgently requesting that the employee purchase gift cards and reply with the codes. The email address is similar to the CEO's but has a slight typo. Which type of threat is this, and which mitigation is most effective?

    Select an answer first
  2. 2expert · hard

    A company is designing a defense-in-depth strategy. They have limited budget and must choose between investing in a next-generation firewall (NGFW) or a comprehensive security awareness training program. The company's biggest risk is employees clicking on malicious links. Which investment is MORE aligned with the risk?

    Select an answer first
  3. 3foundation · easy

    Which mitigation technique is most effective at reducing the risk of employees falling for phishing emails?

    Select an answer first
  4. 4expert · hard

    A company has a legacy application that cannot be patched because the vendor is out of business. The application listens on a TCP port and is accessible from the internal network. The company must keep the application running for regulatory reasons. Which mitigation approach provides the BEST balance of security and operational continuity?

    Select an answer first
  5. 5application · medium

    A network administrator is reviewing security logs and finds that an attacker was able to access a server by exploiting a service that was accidentally left running after a software installation. Which type of vulnerability is this, and which mitigation is MOST appropriate?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “200-301” is a trademark of its owner, used for identification only.