Cisco 350-201 Certification Exam Syllabus

350-201 Syllabus, Cybersecurity Professional Exam Questions PDF, Cisco 350-201 Dumps Free, Cybersecurity Professional PDF, 350-201 Dumps, 350-201 PDF, Cybersecurity Professional VCE, 350-201 Questions PDF, Cisco Cybersecurity Professional Questions PDF, Cisco 350-201 VCEA great way to start the Latest Cisco Certified Cybersecurity Professional (CBRCOR) Certification Sample Questions and Practice Test for 350-201 Performing Cybersecurity Using Cisco Security Technologies Exam. (CBRCOR) preparation is to begin by properly appreciating the role that syllabus and study guide play in the Cisco 350-201 certification exam. This study guide is an instrument to get you on the same page with Cisco and understand the nature of the Cisco Cybersecurity Professional exam.

Our team of experts has composed this Cisco 350-201 exam preparation guide to provide the overview about Performing Cybersecurity Using Cisco Security Technologies exam, study material, sample questions, practice exam and ways to interpret the exam objectives to help you assess your readiness for the Cisco CBRCOR exam by identifying prerequisite areas of knowledge. We recommend you to refer the simulation questions and practice test listed in this guide to determine what type of questions will be asked and the level of difficulty that could be tested in the Cisco Cybersecurity Professional certification exam.

Cisco 350-201 Exam Overview:

Exam Name Performing Cybersecurity Using Cisco Security Technologies
Exam Number 350-201 CBRCOR
Exam Price $400 USD
Duration 120 minutes
Number of Questions 90-110
Passing Score Variable (750-850 / 1000 Approx.)
Recommended Training
Exam Registration PEARSON VUE
Sample Questions Cisco 350-201 Sample Questions
Practice Exam Latest Cisco Certified Cybersecurity Professional (CBRCOR) Certification Sample Questions and Practice Test for 350-201 Performing Cybersecurity Using Cisco Security Technologies Exam. Practice Test

Cisco 350-201 Exam Topics:

Section Weight Objectives
Fundamentals 20% - Interpret the components within a playbook
- Determine the tools needed based on a playbook scenario
- Apply the playbook for a common scenario such as unauthorized elevation of privilege, DoS and DDoS, website defacement

- Infer the industry for various compliance standards such as PCI, FISMA, FedRAMP, SOC, SOX, PCI, GDPR, Data Privacy, and ISO 27101
- Describe the purpose of cyber risk insurance
- Analyze elements of a risk analysis (combination asset, vulnerability, and threat)
- Apply the incident response workflow
- Describe characteristics and areas of improvement using common incident response metrics
- Describe types of cloud environments
- Compare security operations considerations of cloud platforms such as IaaS, PaaS
Techniques 30% - Recommend AI-powered data analytic techniques to meet specific needs or answer specific questions
- Describe the use of hardening machine images for deployment
- Describe the process of evaluating the security posture of an asset
- Evaluate the security controls of an environment, diagnose gaps, and recommend improvement
- Determine resources for industry standards and recommendations for hardening of systems
- Determine patching recommendations, given a scenario
- Recommend services to disable, given a scenario
- Apply segmentation to a network
- Utilize network controls for network hardening
- Determine DevSecOps recommendations (implications)
- Describe use and concepts related to using a Threat Intelligence Platform (TIP) to automate intelligence
- Apply AI-driven threat intelligence using tools
- Apply the concepts of data loss, data leakage, data in motion, data in use, and data at rest based on common standards
- Describe the different mechanisms to detect and enforce data loss prevention techniques
  • Host
  • Network
  • Application
  • Cloud

- Recommend tuning or adapting devices and software across rules, filters, and policies
- Describe the concepts of security data management
- Describe use and concepts of SIEM tools for security data analytics
- Recommend procedural and SOAR workflows from the described issue through escalation and the automation needed for resolution
- Apply dashboard data to communicate with technical, leadership, or executive stakeholders
- Analyze anomalous user and entity behavior (UEBA) using SIEM data
- Determine the next action based on user behavior alerts
- Describe tools and their limitations for network analysis such as packet capture tools, traffic analysis tools, network log analysis tools
- Evaluate artifacts and streams in a packet capture file
- Troubleshoot existing detection rules
- Determine the tactics, techniques, and procedures (TTPs) from an attack

Processes 30% - Analyze components in a threat model
- Determine the steps to investigate the common types of cases
- Apply the concepts and sequence of steps in the malware analysis process:
  • Extract and identify samples for analysis such as packet capture or packet analysis tools
  • Perform reverse engineering
  • Perform dynamic malware analysis using a sandbox environment
  • Identify the need for additional static malware analysis
  • Perform static malware analysis
  • Summarize and share results

- Interpret the sequence of events during an attack based on predictive AI analysis of traffic patterns
- Determine the steps to investigate potential endpoint intrusion across a variety of platform types such as desktop, laptop, IoT, mobile devices
- Determine known Indicators of Compromise (IOCs) and Indicators of Attack (IOAs)
- Determine IOCs in a sandbox environment (includes generating complex indicators)
- Determine the steps to investigate potential data loss from a variety of vectors of modality such as cloud, endpoint, server, databases, application
- Recommend the general mitigation steps to address vulnerability issues
- Recommend the next steps for vulnerability triage and risk analysis using industry scoring systems such as CVSS and other techniques

Automation 20% - Compare concepts, platforms, and mechanisms of SOAR
- Interpret basic scripts such as Python
- Modify a provided script to automate a security operations task
- Recognize common data formats such as JSON, HTML, CSV, XML
- Determine opportunities for automation, orchestration, and machine learning within a SOAR platform
- Determine the constraints when consuming APIs such as rate limited, timeouts, and payload
- Explain the common HTTP response codes associated with REST APIs
- Evaluate the parts of an HTTP response (response code, headers, body)
- Interpret API authentication mechanisms: basic, custom token, and API keys
- Utilize Bash commands (file management, directory navigation, and environmental variables)
- Describe components of a CI/CD pipeline
- Apply the principles of DevOps practices
- Describe the principles of Infrastructure as Code

Cisco CBRCOR Exam Description:

Performing Cybersecurity Using Cisco Security Technologies v1.2 (CBRCOR 350-201) is a 120-minute exam that is associated with the Cisco Cybersecurity Professional Certification. This exam certifies a candidate's knowledge of core cybersecurity operations including cybersecurity fundamentals, techniques, processes, and automation. The course Performing Cybersecurity Using Cisco Security Technologies helps candidates to prepare for this exam.

Rating: 4.9 / 5 (86 votes)