
CiscoCertified Network Professional Security
Domain 3Objective 7
3.7 Describe DevSecOps (Infrastructure as Code Security, CI/CD Pipeline, Container Orchestration, and Secure Software Development) 350-701 Practice Questions (Page 3)
Part of the Cloud Security domain, which accounts for 15% of the 350-701 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–12 in this domain), expect 1–2 from this objective — we provide 24 practice questions to prepare you well beyond it. (estimate)
24questions here
5free pages
4concepts
15%of the exam
Questions 11–15
- 11
Which Kubernetes feature is used to grant fine-grained permissions to users and service accounts?
Select an answer first - 12
In a Kubernetes cluster, which mechanism is used to control which pods can communicate with each other?
Select an answer first - 13
An organization uses Ansible to manage configuration of servers. They want to ensure that secrets like passwords and API keys are not stored in plain text in the playbooks. Which practice should they adopt?
Select an answer first - 14
A development team is starting a new web application project. They want to identify potential security threats early in the design phase. Which activity should they perform first?
Select an answer first - 15
What is the primary purpose of threat modeling in the secure software development lifecycle?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-701” is a trademark of its owner, used for identification only.