Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified Network Professional Cybersecurity (CBRCOR)

Domain 2Objective 12

2.12 Apply AI-driven Threat Intelligence Using Tools 350-201 Practice Questions (Page 2)

Part of the Techniques domain, which accounts for 30% of the 350-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–24 in this domain), expect 1–1 from this objective — we provide 43 practice questions to prepare you well beyond it. (estimate)

43questions here
9free pages
5concepts
30%of the exam

Questions 6–10

  1. 6application · medium

    A security operations center (SOC) receives thousands of raw alerts daily from multiple sources. The team wants to reduce alert fatigue by automatically grouping related alerts into incidents and prioritizing them based on the likelihood of compromise. The solution must also enrich alerts with external threat context to help analysts quickly understand the threat. Which approach best meets these requirements?

    Select an answer first
  2. 7application · medium

    A security team is considering using an AI-driven threat intelligence platform to improve their threat detection. They want to understand how AI can enhance the collection and analysis of threat data. What is a key benefit of using AI in threat intelligence?

    Select an answer first
  3. 8application · medium

    A security analyst is using an AI-driven threat intelligence platform to detect malicious activity in network traffic. The platform uses unsupervised learning to identify anomalies. The analyst receives an alert about unusual outbound traffic from a server that normally has low traffic. The analyst investigates and finds that the server is performing a legitimate large data transfer. What should the analyst do?

    Select an answer first
  4. 9expert · hard

    A security team is using an AI-driven threat intelligence platform that provides a risk score for each alert. The team notices that the risk scores are consistently high for alerts that turn out to be false positives. They want to calibrate the model to improve accuracy. What should they do?

    Select an answer first
  5. 10application · medium

    A security analyst is using an AI-driven tool that analyzes endpoint behavior to detect ransomware. The tool flags a process that is encrypting files and contacting a known command-and-control server. What should the analyst do?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-201” is a trademark of its owner, used for identification only.