
CCIE Security
Domain 5Objective 7
5.7 Email Security Features CCIE-SECURITY Practice Questions (Page 5)
Part of the 5.0 Advanced Threat Protection and Content Security domain, which accounts for 20% of the CCIE-SECURITY exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–2 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)
30questions here
6free pages
5concepts
20%of the exam
Questions 21–25
- 21
A company is implementing email authentication. They want to ensure that: (1) all outgoing emails are signed with DKIM, (2) receiving servers can verify the signature, and (3) emails that fail authentication are rejected. Which of the following should be configured? (Select all that apply.)
Select an answer first - 22
An organization must prevent credit card numbers from being sent via email. They have a mix of Outlook clients and webmail users. What is the most effective approach?
Select an answer first - 23
A healthcare organization must ensure that emails containing patient health information (PHI) are encrypted. They also want to prevent PHI from being sent to unauthorized external recipients. Which of the following should be configured? (Select all that apply.)
Select an answer first - 24
A security team wants to review emails that might contain malware or phishing links before they are delivered to users. They also want to allow users to self-release false positives. What should you implement?
Select an answer first - 25
A company wants to ensure that emails sent from their domain are not tampered with and that recipients can verify the sender. They already have SPF configured. What additional mechanism should they implement to sign their emails?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “CCIE-SECURITY” is a trademark of its owner, used for identification only.