Questions for the 300-735 were updated on : Nov 14 ,2024
DRAG DROP
Refer to the exhibit.
Drag and drop the elements from the left onto the script on the right that queries Cisco ThreatGRID for indications of
compromise.
Select and Place:
Explanation:
Reference: https://community.cisco.com/t5/endpoint-security/amp-threat-grid-api/m-p/3538319
Which API capability is available on Cisco Firepower devices?
B
Which API is designed to give technology partners the ability to send security events from their platform/service/appliance
within a mutual customer's environment to the Umbrella cloud for enforcement?
C
Refer to the exhibit. The security administrator must temporarily disallow traffic that goes to a production web server using
the Cisco FDM REST API. The administrator sends an API query as shown in the exhibit.
What is the outcome of that action?
C
Refer to the exhibit. A security engineer attempts to query the Cisco Security Management appliance to retrieve details of a
specific message.
What must be added to the script to achieve the desired result?
C
What is the purpose of the snapshot APIs exposed by Cisco Stealthwatch Cloud?
B
Which two event types can the eStreamer server transmit to the requesting client from a managed device and a
management center? (Choose two.)
B D
For which two programming languages does Cisco offer an SDK for Cisco pxGrid 1.0? (Choose two.)
C D
DRAG DROP
Drag and drop the items to complete the curl request to the ThreatGRID API. The API call should request the first 10 IP
addresses that ThreatGRID saw samples communicate with during analysis, in the first two hours of January 18th (UTC
time), where those communications triggered a Behavior Indicator that had a confidence equal to or higher than 75 and a
severity equal to or higher than 95.
Select and Place:
Explanation:
Reference:
https://support.umbrella.com/hc/en-us/articles/231248768-Cisco-Umbrella-Cisco-AMP-Threat-Grid-Cloud-Integration-Setup-
Guide
DRAG DROP
Drag and drop the code to complete the curl command to query the Cisco Umbrella Investigate API for the umbrella
popularity list. Not all options are used.
Select and Place:
Explanation:
Reference: https://docs.umbrella.com/investigate-api/reference
What are two benefits of Ansible when managing security platforms? (Choose two.)
C E
Which request searches for a process window in Cisco ThreatGRID that contains the word “secret”?
D
After changes are made to the Cisco Firepower Threat Defense configuration using the Cisco Firepower Device Manager
API, what must be done to ensure that the new policy is activated?
A
Which two APIs are available from Cisco ThreatGRID? (Choose two.)
C E
Which snippet describes the way to create an URL object in Cisco FDM using FDM REST APIs with curl?
B