CCNP Security 300-710 SNCF Practice Test 27

CCNP Security 300-710 SNCF Practice Test 27 (Hard) - Malware Defense and Endpoint Integration (AMP for Endpoints)

CISCO CCNP Security Exam Logo

1 / 10

Which Secure Firewall Threat Defense capability inspects files traversing the network and assigns a disposition (such as clean, malware, or unknown) based on file reputation and analysis?

2 / 10

Which shared threat intelligence and file reputation source do Malware Defense on Secure Firewall Threat Defense and Cisco Secure Endpoint (AMP for Endpoints) both draw from, enabling consistent file dispositions across network and endpoint enforcement points?

3 / 10

Which capability allows Secure Firewall Threat Defense to see the complete path a specific malicious file took across multiple hosts on the network, once it has been identified as malware?

4 / 10

Which retrospective capability allows a file that was initially judged clean by Malware Defense to later be reclassified as malicious based on updated threat intelligence, triggering alerts for hosts that received it?

5 / 10

Which integration benefit results from combining network-level Malware Defense with Cisco Secure Endpoint on the same hosts, compared to using network-level defense alone?

6 / 10

Which action would be appropriate for a SOC analyst who identifies, via file trajectory, that a piece of malware reached several endpoints that also run Cisco Secure Endpoint?

7 / 10

Which file policy configuration option would an administrator enable to allow a copy of a suspicious file to be retained for later offline or sandbox analysis, rather than only recording its disposition?

8 / 10

Which dynamic analysis capability can Malware Defense leverage to detonate an unknown file in an isolated environment and observe its behavior before assigning a final disposition?

9 / 10

Which practical consideration is important when deciding which file types and traffic flows to subject to full Malware Defense inspection, given performance and licensing implications?

10 / 10

Which combination of network and endpoint malware defense practices would provide the most complete protection lifecycle, from initial file detection through investigation and containment?

Your score is

The average score is 0%

0%