Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified Network Associate (CCNA)

Domain 5Objective 1

5.1 Define Key Security Concepts (threats, Vulnerabilities, Exploits, and Mitigation Techniques) 200-301 Practice Questions (Page 3)

Part of the Security Fundamentals domain, which accounts for 15% of the 200-301 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–12 in this domain), expect 1–1 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)

30questions here
6free pages
4concepts
15%of the exam

Questions 11–15

  1. 11expert · hard

    A security analyst is investigating a breach. The attacker gained access to a server by exploiting a vulnerability in a web application, then used that server to launch attacks against other internal systems. The web application has been patched, but the analyst needs to prevent the attacker from moving laterally. Which control is MOST effective for this purpose?

    Select an answer first
  2. 12expert · hard

    A company is implementing a security awareness program. The goal is to reduce the likelihood of successful phishing attacks. The company has a limited budget and must choose ONE primary control. Which control would be MOST effective?

    Select an answer first
  3. 13application · medium

    A small company's finance team frequently receives emails with invoices attached. Several employees have reported that opening these attachments sometimes triggers a pop-up asking for their email password. The IT administrator notices that the company's email gateway only scans for known malware signatures. Which mitigation should the administrator implement first to reduce the risk of credential theft from these emails?

    Select an answer first
  4. 14application · medium

    A network administrator is configuring a new wireless network for a small office. The administrator wants to prevent unauthorized users from capturing and decrypting wireless traffic. Which configuration is the most effective mitigation?

    Select an answer first
  5. 15application · medium

    A company's file server is infected with ransomware that encrypts files and displays a ransom note. The IT team restores the files from a recent backup. Which additional mitigation should be implemented to prevent a recurrence?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “200-301” is a trademark of its owner, used for identification only.