Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Cisco logo

CiscoCertified Network Professional Enterprise

Domain 5Objective 3

5.3 Describe REST API Security 350-401 Practice Questions (Page 4)

Part of the 5.0 Security domain, which accounts for 20% of the 350-401 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 3–4 from this objective — we provide 43 practice questions to prepare you well beyond it. (estimate)

43questions here
9free pages
8concepts
20%of the exam

Questions 16–20

  1. 16application · medium

    An organization is deploying a REST API for network device configuration. The API must allow network engineers to modify configurations, but help desk staff should only be able to view device status. The team wants to enforce these permissions centrally. Which approach should be used?

    Select an answer first
  2. 17expert · hard

    A network automation team is deploying a REST API client that must connect to multiple Cisco devices. Each device uses a different self-signed certificate. The team wants to maintain secure communication without manual intervention for each device. Which approach should be used?

    Select an answer first
  3. 18expert · hard

    A network operations team has implemented a REST API for device provisioning. The API is protected by rate limiting and authentication. The security team wants to detect a slow, distributed brute-force attack that uses many different source IPs and low request rates to avoid triggering rate limits. Which logging and monitoring strategy is most effective?

    Select an answer first
  4. 19expert · hard

    A REST API for network automation accepts JSON payloads to configure devices. A security audit found that the API is vulnerable to command injection because user input is passed to a shell command. The team must fix the vulnerability without breaking legitimate functionality. Which approach is the most effective?

    Select an answer first
  5. 20expert · hard

    A network automation platform uses API keys for authentication. The team wants to rotate keys regularly to reduce risk. However, some scripts hardcode the keys and are difficult to update. Which approach should the team implement?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-401” is a trademark of its owner, used for identification only.