
CiscoCertified Network Professional Cybersecurity (CBRCOR)
Domain 2Objective 16
2.16 Describe the Concepts of Security Data Management 350-201 Practice Questions (Page 1)
Part of the Techniques domain, which accounts for 30% of the 350-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–24 in this domain), expect 1–1 from this objective — we provide 50 practice questions to prepare you well beyond it. (estimate)
50questions here
10free pages
9concepts
30%of the exam
Questions 1–5
- 1
What is the primary purpose of data normalization in security data management?
Select an answer first - 2
A SOC manager wants to provide a dashboard that shows the number of alerts by severity, the top attacked assets, and the trend of phishing emails over the past month. The data is already collected in the SIEM. What should the manager use to present this information effectively?
Select an answer first - 3
What is the purpose of data enrichment in security analysis?
Select an answer first - 4
Which analytical technique is commonly used to identify unusual behavior in security data?
Select an answer first - 5
A healthcare organization must retain patient data logs for six years per regulations, but internal policy requires that logs containing personally identifiable information (PII) be deleted after three years. The SIEM currently stores all logs for six years. The compliance officer wants to resolve this conflict. What should the organization do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-201” is a trademark of its owner, used for identification only.