
CiscoCertified Network Professional Security
Domain 1Objective 7
1.7 Describe Security Intelligence Authoring, Sharing, and Consumption 350-701 Practice Questions (Page 5)
Part of the Security Concepts domain, which accounts for 20% of the 350-701 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–2 from this objective — we provide 25 practice questions to prepare you well beyond it. (estimate)
25questions here
5free pages
8concepts
20%of the exam
Questions 21–25
- 21
What is the role of IOCs in security intelligence?
Select an answer first - 22
Which activity is part of security intelligence authoring?
Select an answer first - 23
A university's network team subscribes to a commercial threat intelligence feed that includes IP addresses, domains, and file hashes. They want to automatically block traffic to known malicious destinations at the perimeter without overwhelming the firewall's rule base. Which integration approach best meets this requirement?
Select an answer first - 24
A regional bank's SOC wants to exchange structured threat intelligence with a peer institution. The bank uses a SIEM that can parse STIX 2.1 documents, and the peer runs a TAXII 2.1 server. The SOC lead needs to automate the ingestion of the peer's indicators every 30 minutes. Which approach satisfies the requirement with the least custom development?
Select an answer first - 25
What is a common way SIEM tools integrate threat intelligence?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to 350-701
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-701” is a trademark of its owner, used for identification only.