200-201 Dumps

200-201 Free Practice Test

Cisco 200-201: Understanding Cisco Cybersecurity Operations Fundamentals

QUESTION 111

What makes HTTPS traffic difficult to monitor?

Correct Answer: D

QUESTION 112

Refer to the exhibit.
200-201 dumps exhibit
Which kind of attack method is depicted in this string?

Correct Answer: A

QUESTION 113

Which piece of information is needed for attribution in an investigation?

Correct Answer: C
Actually this is the most important thing: know who, what, how, why, etc.. attack the network.

QUESTION 114

What are two differences in how tampered and untampered disk images affect a security incident? (Choose two.)

Correct Answer: AE
Cert Guide by Omar Santos, Chapter 9 - Introduction to digital Forensics. "When you collect evidence, you must protect its integrity. This involves making sure that nothing is added to the evidence and that nothing is deleted or destroyed (this is known as evidence preservation)."

QUESTION 115

Refer to the exhibit.
200-201 dumps exhibit
What is shown in this PCAP file?

Correct Answer: D