
CiscoCertified Network Professional Cybersecurity (CBRCOR)
Domain 2Objective 3
2.3 Describe the Process of Evaluating the Security Posture of an Asset 350-201 Practice Questions (Page 5)
Part of the Techniques domain, which accounts for 30% of the 350-201 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–24 in this domain), expect 1–1 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)
46questions here
10free pages
6concepts
30%of the exam
Questions 21–25
- 21
A financial services firm is starting a security posture evaluation. The firm has a mix of assets: a customer transaction database, a public marketing website, internal employee workstations, and a legacy HR system. The firm has limited assessment resources and wants to focus on the assets that pose the greatest risk. Which asset should be classified as the highest priority for assessment?
Select an answer first - 22
A small business wants to evaluate the security posture of its network. They have a mix of desktops, laptops, and a single server. The owner wants a structured approach. What is the first step in the process?
Select an answer first - 23
A security analyst is scoring risks for two assets: a public web server and an internal HR database. The web server has a high-severity vulnerability that is easy to exploit, but it only hosts static content. The HR database has a medium-severity vulnerability that is difficult to exploit, but it contains highly sensitive employee data. The analyst must prioritize remediation. Which asset should be scored as higher risk?
Select an answer first - 24
After completing a security posture evaluation of a legacy file server, an analyst has identified several high-risk findings. The server is used by the finance department and contains sensitive financial records. What should the analyst do first?
Select an answer first - 25
A security team is assessing the threat landscape for a company's email system. The system uses a cloud-based email service with strong spam filtering and multi-factor authentication (MFA). The team identifies that the company has been targeted by business email compromise (BEC) attacks. What is the most significant threat to the email system's security posture?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-201” is a trademark of its owner, used for identification only.