Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified Network Professional Cybersecurity (CBRCOR)

Domain 2Objective 12

2.12 Apply AI-driven Threat Intelligence Using Tools 350-201 Practice Questions (Page 4)

Part of the Techniques domain, which accounts for 30% of the 350-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–24 in this domain), expect 1–1 from this objective — we provide 43 practice questions to prepare you well beyond it. (estimate)

43questions here
9free pages
5concepts
30%of the exam

Questions 16–20

  1. 16expert · hard

    A security team is evaluating two AI-driven threat intelligence platforms. Platform A uses supervised machine learning trained on a large dataset of known malware, while Platform B uses unsupervised learning to detect anomalies in network traffic. The team needs to identify previously unknown malware variants that do not match any known signatures. Which platform should they choose?

    Select an answer first
  2. 17expert · hard

    A company has an AI-driven threat intelligence platform that produces a high volume of alerts. The SOC is overwhelmed and misses critical alerts. The team wants to implement a triage system that uses AI to prioritize alerts based on the organization's risk tolerance. What is the best approach?

    Select an answer first
  3. 18application · medium

    A security manager is evaluating an AI-driven threat intelligence platform that provides daily reports on emerging threats. The manager notices that the platform's reports often include threats that are not relevant to the organization's industry or technology stack. What is the most important factor to consider when assessing the platform's effectiveness?

    Select an answer first
  4. 19foundation · easy

    What is a common way to integrate AI-driven threat intelligence into security operations?

    Select an answer first
  5. 20expert · medium

    A company wants to integrate AI-driven threat intelligence into its security operations. The company has a mature SIEM deployment and a well-defined incident response process. They want to automate the enrichment of alerts with threat intelligence and automatically block malicious indicators at the firewall. However, they are concerned about the risk of blocking legitimate traffic due to false positives. What is the best approach to mitigate this risk?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-201” is a trademark of its owner, used for identification only.