Sample questions
Cisco Designing Cisco Security Infrastructure (SDSI, 300-745, CCNP Security, design-focused) (SDSI) practice questions
You are automating the lifecycle of Cisco Secure Firewall policies. Which tool should be selected to integrate security policy as code (SaC) into a GitHub Actions pipeline?
In the context of AI-driven security, what does 'False Positive Reduction' primarily achieve?
Which of the following is a key requirement for implementing successful DevSecOps in a large organization?
Which THREE of the following are key AI/ML design considerations when selecting a security automation platform?
In a cloud-native environment, which Cisco solution provides visibility into vulnerabilities within the application code and runtime environment?
Which Cisco feature is specifically designed to prevent 'Credential Stuffing' in an automated application environment?
Which TWO of the following are benefits of using 'Infrastructure as Code' (IaC) with Cisco Secure Firewall?
What is the primary function of an 'API Gateway' in a secure automated environment?
Which THREE of the following represent common challenges when implementing automated security in a legacy environment?
In the context of Cisco Cloudlock, what is a 'Shadow IT' application?
When designing a multi-cloud CI/CD security architecture, how should secrets (API keys for Cisco FMC) be managed to ensure compliance?
When utilizing Cisco DevNet tools for security, which Python library is the standard for interacting with the Cisco FMC API efficiently?
Which Cisco solution is primarily designed to provide visibility and protection for SaaS applications like Office 365, Salesforce, and Slack?
Which TWO of the following steps are required to integrate a security tool (like Cisco Secure Firewall) into a CI/CD pipeline?
Which TWO of the following are true about 'Policy as Code' in Cisco security infrastructure?
Which Cisco security solution utilizes AI-based 'Cognitive Intelligence' to detect threats in encrypted traffic without decrypting the payload?
When designing an automated remediation workflow for Cisco Secure Firewall, what is the specific function of the 'Cisco Secure Firewall REST API' in the context of threat intellige…
You are implementing automated policy enforcement for Cisco Secure Access by Duo. Which API allows you to programmatically manage users and authentication settings?
You are designing an automated pipeline for Cisco Secure Firewall. If a deployment fails, which mechanism ensures the configuration is reverted to the last known good state?
Which TWO of the following capabilities does Cisco Secure Firewall (FMC) provide to support automated security workflows?
To secure API endpoints exposed via Cisco Secure API Gateway, which policy type is best suited to prevent brute-force attacks on authentication endpoints?
You are designing security for a SaaS application integrated with Cisco Cloudlock. A user is persistently attempting to share sensitive documents with external parties. Which Cloud…
When designing an automated security policy deployment for Cisco Secure Workload (formerly Tetration), which mechanism allows you to test policies in a simulation environment befor…
In a DevSecOps environment, you need to implement Cisco Secure Firewall Management Center (FMC) rule updates via Ansible. Which approach ensures the highest level of security and i…