
CiscoCertified Network Professional Cybersecurity (CBRCOR)
Domain 2Objective 14
2.14 Describe the Different Mechanisms to Detect and Enforce Data Loss Prevention Techniques 350-201 Practice Questions (Page 6)
Part of the Techniques domain, which accounts for 30% of the 350-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–24 in this domain), expect 1–1 from this objective — we provide 31 practice questions to prepare you well beyond it. (estimate)
31questions here
7free pages
4concepts
30%of the exam
Questions 26–30
- 26
A company uses Microsoft 365 and wants to protect data in SharePoint and OneDrive. Which cloud-based DLP approach is most suitable?
Select an answer first - 27
A company uses a cloud-based DLP service for its SaaS applications, but the security team is concerned about data exfiltration via personal cloud storage services like Dropbox and Google Drive. They have a network-based DLP sensor at the egress, but it cannot inspect encrypted traffic. Which approach would provide the most effective control?
Select an answer first - 28
Which limitation is most commonly associated with network-based DLP sensors?
Select an answer first - 29
A company is migrating its email system to a cloud-based SaaS provider. The security team wants to enforce DLP on email content both in transit and at rest, and also block malicious data exfiltration to personal email accounts. Which DLP mechanism should be the primary control?
Select an answer first - 30
What is a key advantage of inline cloud-based DLP controls over API-based controls?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-201” is a trademark of its owner, used for identification only.