
CiscoCertified Network Professional Cybersecurity (CBRCOR)
Domain 2Objective 13
2.13 Apply the Concepts of Data Loss, Data Leakage, Data in Motion, Data in Use, and Data at Rest Based on Common Standards 350-201 Practice Questions (Page 4)
Part of the Techniques domain, which accounts for 30% of the 350-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–24 in this domain), expect 1–1 from this objective — we provide 26 practice questions to prepare you well beyond it. (estimate)
26questions here
6free pages
4concepts
30%of the exam
Questions 16–20
- 16
A global company processes credit card data for customers in the EU and the US. They must comply with both PCI DSS and GDPR. They store cardholder data in a database and transmit it to a payment processor. Which control is required by BOTH standards?
Select an answer first - 17
A security analyst discovers that a database backup file was accidentally deleted from a storage array, and the organization has no recoverable copy. Which term best describes this incident?
Select an answer first - 18
A company is implementing protections for customer PII stored in a database and accessed by internal applications. The database is on a private network, and the applications connect over the internal network. Which control is most appropriate to protect the data while it is being read by the applications?
Select an answer first - 19
An employee at a financial firm is working on a spreadsheet containing customer account numbers. The file is stored on an encrypted corporate share, and the employee is currently editing it on their workstation. While editing, the employee accidentally sends the file as an email attachment to a personal address. Which data state was the file in when it was sent?
Select an answer first - 20
A financial services company must protect customer data in a database that is accessed by internal applications and also replicated to a disaster recovery site over a WAN link. The company must comply with PCI DSS. The database is encrypted at rest, but the replication traffic is not encrypted. Which additional control is required to meet PCI DSS requirements?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-201” is a trademark of its owner, used for identification only.