
CCIE Security
Domain 5Objective 1
5.1 Cisco AMP for Networks, Cisco AMP for Endpoints, and Cisco AMP for Content Security (Cisco ESA, and Cisco WSA) CCIE-SECURITY Practice Questions (Page 4)
Part of the 5.0 Advanced Threat Protection and Content Security domain, which accounts for 20% of the CCIE-SECURITY exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–2 from this objective — we provide 59 practice questions to prepare you well beyond it. (estimate)
59questions here
12free pages
10concepts
20%of the exam
Questions 16–20
- 16
In Cisco AMP for Networks, what is the effect of adding a file hash to the 'allow list' in a file policy?
Select an answer first - 17
Which action can be configured in a Cisco AMP for Networks file policy when a file is determined to be malicious?
Select an answer first - 18
Which component of Cisco AMP for Endpoints is responsible for enforcing policies and reporting detections to the AMP cloud?
Select an answer first - 19
Which deployment option for Cisco AMP for Endpoints is designed for organizations that want to manage their own infrastructure and have full control over data?
Select an answer first - 20
Which Cisco AMP for Endpoints feature is specifically designed to prevent exploits by monitoring application behavior and blocking malicious actions?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “CCIE-SECURITY” is a trademark of its owner, used for identification only.