Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified Network Professional Cybersecurity (CBRCOR)

Domain 2Objective 13

2.13 Apply the Concepts of Data Loss, Data Leakage, Data in Motion, Data in Use, and Data at Rest Based on Common Standards 350-201 Practice Questions (Page 1)

Part of the Techniques domain, which accounts for 30% of the 350-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–24 in this domain), expect 1–1 from this objective — we provide 26 practice questions to prepare you well beyond it. (estimate)

26questions here
6free pages
4concepts
30%of the exam

Questions 1–5

  1. 1application · medium

    A financial analyst is working on a sensitive spreadsheet on a laptop. The file is saved to an encrypted hard drive. While the analyst is editing the spreadsheet, a malicious program captures the keystrokes and sends them to an external server. In which data state was the information when it was compromised?

    Select an answer first
  2. 2expert · hard

    A company is designing a data protection strategy for a new application that stores sensitive data in a database and also sends data to a third-party API over the internet. The company must protect the data in all states. Which approach is most comprehensive?

    Select an answer first
  3. 3expert · hard

    A security analyst is investigating an incident where a database containing customer PII was copied by an attacker and then deleted from the server. The attacker also exfiltrated the data to an external server. Which classification best describes this incident?

    Select an answer first
  4. 4foundation · easy

    A user is composing an email in a webmail client, and the content is temporarily held in the computer's RAM while the application is running. Which data state does this represent?

    Select an answer first
  5. 5expert · hard

    A multinational company processes personal data of EU residents and stores it in a data center in the EU. The company also transfers some data to a subsidiary in a country that does not have an adequacy decision from the EU. The company must ensure compliance with GDPR. Which measure is most appropriate to legitimize the transfer?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-201” is a trademark of its owner, used for identification only.