
CCIE Security
Domain 5Objective 1
5.1 Cisco AMP for Networks, Cisco AMP for Endpoints, and Cisco AMP for Content Security (Cisco ESA, and Cisco WSA) CCIE-SECURITY Practice Questions (Page 12)
Part of the 5.0 Advanced Threat Protection and Content Security domain, which accounts for 20% of the CCIE-SECURITY exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–2 from this objective — we provide 59 practice questions to prepare you well beyond it. (estimate)
59questions here
12free pages
10concepts
20%of the exam
Questions 56–59
- 56
An administrator is configuring AMP for Networks policies. They want to ensure that files from a specific business-critical application server are never sandboxed, but still allow the server's files to be checked for reputation. Which policy setting should be applied?
Select an answer first - 57
A network administrator notices that AMP for Networks is not blocking any files, even though the policy is set to 'Block' for malicious files. The AMP appliance is deployed in inline mode. What is the most likely cause?
Select an answer first - 58
A security team is evaluating Cisco AMP for Endpoints to protect against advanced threats. They want to utilize multiple layers of defense. Which of the following are protection features available in AMP for Endpoints? (Select all that apply.)
Select an answer first - 59
A company uses Cisco ESA with AMP for Content Security. A user received an email with an attachment that was initially unknown and allowed through. Later, the AMP cloud determines the file is malicious. What action should the administrator take to remediate the threat?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CCIE-SECURITY
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “CCIE-SECURITY” is a trademark of its owner, used for identification only.