CCNP Security 300-710 SNCF Practice Test 28

CCNP Security 300-710 SNCF Practice Test 28 (Hard) - Threat Intelligence Director and XDR

CISCO CCNP Security Exam Logo

1 / 10

Which Secure Firewall Management Center feature allows administrators to ingest third-party threat intelligence feeds (such as STIX/TAXII sources) and automatically apply them as blocking criteria across managed devices?

2 / 10

Which standard feed formats does Threat Intelligence Director commonly support for ingesting third-party threat intelligence indicators?

3 / 10

Which TID indicator action would cause matching traffic (such as a connection to a known-malicious IP address from an ingested feed) to be automatically blocked once the indicator is published to managed devices?

4 / 10

Which security operations concept refers to a unified approach that correlates telemetry and detections across multiple security layers (network, endpoint, email, cloud) into a single investigation and response workflow?

5 / 10

Which practical benefit does XDR provide to a SOC analyst investigating a security incident that spans both network-level Malware Defense detections and endpoint-level Secure Endpoint events?

6 / 10

Which TID indicator source consideration is important when deciding whether to enable automatic Block actions for a newly subscribed third-party threat feed?

7 / 10

Which TID capability would allow an administrator to see which specific managed devices have actually enforced a given published indicator, and how many times it has matched traffic?

8 / 10

Which combination of TID and XDR capabilities would help an organization both proactively block known-bad indicators and effectively investigate incidents that indicators alone did not fully prevent?

9 / 10

Which operational practice would help ensure TID-ingested indicators remain relevant and do not accumulate stale, outdated entries over time?

10 / 10

Which strategic benefit does integrating TID and XDR provide to an organization's overall security operations maturity over time, compared to relying solely on individually managed, disconnected security tools?

Your score is

The average score is 0%

0%