
CCIE Security
Domain 5Objective 7
5.7 Email Security Features CCIE-SECURITY Practice Questions (Page 4)
Part of the 5.0 Advanced Threat Protection and Content Security domain, which accounts for 20% of the CCIE-SECURITY exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–2 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)
30questions here
6free pages
5concepts
20%of the exam
Questions 16–20
- 16
A company wants to implement email authentication to prevent spoofing. They have a complex environment with multiple third-party senders (e.g., marketing emails) that send on behalf of their domain. They need to ensure that legitimate third-party emails are not rejected while still protecting against spoofing. What is the best strategy?
Select an answer first - 17
A global company needs to encrypt email communications with partners who use different email systems. Some partners do not support S/MIME or PGP. They also need to comply with regulations that require encryption of data at rest. What solution should they adopt?
Select an answer first - 18
A company is designing a mail policy framework. They need to ensure that: (1) emails from external senders to the finance department are scanned for DLP, (2) emails with malware indicators are quarantined, and (3) emails from known spam sources are rejected. Which of the following actions should they include in their mail policies? (Select all that apply.)
Select an answer first - 19
An organization must protect sensitive data in email. They want to implement DLP and also ensure that if data is sent, it is encrypted. They also want to allow users to override DLP blocks for legitimate business needs, with manager approval. Which of the following should be configured? (Select all that apply.)
Select an answer first - 20
A security team is configuring quarantine for a large organization. They want to ensure that: (1) users can release their own quarantined messages, (2) the security team is notified when a message is quarantined, and (3) messages that are not released are automatically deleted after 30 days. Which of the following should be configured? (Select all that apply.)
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “CCIE-SECURITY” is a trademark of its owner, used for identification only.