
CiscoCertified Network Professional Security
Domain 4Objective 4
4.4 Configure Data Loss Prevention and AI Guardrails for Secure Internet Access 350-701 Practice Questions (Page 3)
Part of the Secure Service Edge domain, which accounts for 10% of the 350-701 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~5–8 in this domain), expect 1–2 from this objective — we provide 29 practice questions to prepare you well beyond it. (estimate)
29questions here
6free pages
6concepts
10%of the exam
Questions 11–15
- 11
Which of the following is an example of a report that could be generated from DLP and AI guardrail monitoring data?
Select an answer first - 12
A security team wants to detect employees who are using AI tools to generate and then exfiltrate sensitive data. Which monitoring approach would best identify this behavior?
Select an answer first - 13
In a DLP policy, what is the purpose of defining user actions?
Select an answer first - 14
A company uses a secure web gateway (SWG) with integrated DLP to inspect web traffic. They need to prevent users from uploading files containing source code to public code repositories like GitHub, but they must allow access to GitHub for reading documentation. Which configuration should be implemented?
Select an answer first - 15
A security operations team is investigating a potential data breach. They suspect that an employee used a personal cloud storage service to exfiltrate sensitive data. The DLP solution logs incidents, but the team is unsure if the data was actually transmitted. Which monitoring and reporting capability would best help confirm the exfiltration?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-701” is a trademark of its owner, used for identification only.