700-760 Sample Questions & Answers
The security-solutions portfolio for next-generation networks ties with the broader threat landscape for the top weight, alongside how Cisco's partner programs support the security practice, conversations with customers, IoT security, and the value of Zero Trust.
Launch the full 700-760 simulator →Showing 10 of 20 free samples.
- Question 1Beginner
IoT Security · Identify components of Cisco’s IoT security
True or False: Cisco Cyber Vision is an agent-based solution that requires software to be installed directly on every IoT and OT device for monitoring.
Show answer & explanation
Correct answer: B
False. Cisco Cyber Vision is primarily a passive, agentless solution. It uses sensors to analyze network traffic (via SPAN ports or taps) to discover and profile devices, identify vulnerabilities, and monitor behavior without installing any software on the sensitive and often proprietary OT/IoT endpoints. This is critical for industrial environments where installing agents is often impossible or prohibited.
- Question 2Intermediate
Cisco Zero Trust · Identify the value of zero trust
A healthcare organization needs to provide secure access for doctors and nurses to patient records hosted in a private cloud. The users connect from a mix of hospital-owned laptops and personal mobile devices. The CISO wants to ensure that every access request is verified, regardless of the user's location or device. Which Cisco product is the cornerstone for verifying user and device trust before granting access to applications, as depicted in the Zero Trust for the Workforce model?
sequenceDiagram participant User as User/Device participant Duo as Cisco Duo participant App as Application User->>App: Attempts Access App->>Duo: Redirect for Verification Duo-->>User: Prompt for MFA User-->>Duo: Approve MFA Duo->>App: Grant Access Token App-->>User: Access GrantedShow answer & explanation
Correct answer: A
Cisco Duo is the core component for establishing user and device trust in the Zero Trust for the Workforce pillar. It provides multi-factor authentication (MFA) and performs device health checks before granting access to applications. The diagram clearly shows this verification flow. While ISE is crucial for network access (Workplace), Duo is primary for application access (Workforce).
- Question 3Intermediate
Threat Landscape and Security Issues · Identify cyber security challenges
A financial services client complains that their security analysts are unable to investigate threats effectively because they cannot see the full context of an attack. An alert on a firewall might be related to a phishing email and subsequent malicious activity on an endpoint, but their tools do not connect these events. This inability to see the complete attack chain across multiple security domains is a direct symptom of what common industry problem?
Show answer & explanation
Correct answer: C
A siloed security architecture, where each security tool (email, firewall, endpoint) operates independently, prevents the correlation of threat intelligence and events. This lack of integration makes it impossible to trace an attack's lifecycle across different domains. While automation can help, the root problem is the siloed nature of the tools. Cisco addresses this with platforms like SecureX and Cisco XDR that integrate these domains.
- Question 4Intermediate
Selling Cisco Security · Identify customer security challenges
When positioning the Cisco Security portfolio to a C-level executive (e.g., CEO, CFO), what is the most effective approach for an Account Manager to take?
Show answer & explanation
Correct answer: A
C-level executives are primarily concerned with business outcomes, not technical minutiae. The most effective approach is to frame the security conversation around business value: reducing risk, enabling new business initiatives (like cloud migration or remote work), ensuring compliance, and improving operational efficiency. Technical details and pricing specifics are better suited for conversations with IT and procurement teams.
- Question 5AdvancedSelect 2
Cisco Security Solutions Portfolio · Identify Cisco solutions for next generation network security
A customer wants to build a Secure Access Service Edge (SASE) architecture to support their distributed workforce. Which TWO Cisco security products are foundational components of a comprehensive Cisco SASE solution? (Select TWO)
Show answer & explanation
Correct answers: B, E
- Question 6Intermediate
IoT Security · Identify how Cisco IoT Security solutions provide layered protection
A hospital is deploying thousands of connected medical devices like infusion pumps and patient monitors. The IT team's primary concern is preventing these devices from being used as a pivot point to attack the main hospital network. Which security concept is most critical to implement for this use case?
Show answer & explanation
Correct answer: C
Network segmentation is the most critical security control in this scenario. By isolating the medical devices on their own network segment (e.g., a VLAN) and enforcing strict access control policies (using tools like ISE and Secure Firewall), the hospital can contain any potential compromise and prevent lateral movement to the core network. While other controls are important, segmentation provides the foundational protection for unmanaged IoT devices.
- Question 7Advanced
Threat Landscape and Security Issues · Identify the role of digitization in cyber security
A large retail corporation recently suffered a major data breach originating from a third-party HVAC vendor. The vendor's credentials, which had broad access to the corporate network, were compromised through a phishing attack. The attackers then moved laterally from the HVAC management system to the point-of-sale (POS) network, exfiltrating millions of customer credit card records.
The investigation revealed several key failures: the security team had no way to verify the identity of the vendor beyond a simple password, the compromised device lacked modern endpoint protection, and internal traffic was not adequately monitored. The CISO has been tasked with presenting a new security strategy to the board.
As the Cisco Account Manager advising the CISO, which element of a Zero Trust strategy would have most directly prevented this specific breach methodology?
Show answer & explanation
Correct answer: D
The root cause of the breach was the compromised third-party credentials with excessive trust. A Zero Trust approach, specifically implementing Cisco Duo, would have addressed this directly. Duo would have required MFA for the vendor to log in, which the attacker would not have. Furthermore, Duo's device health checks could have blocked access from a compromised or non-compliant device. While other options are valuable security controls, they are reactive measures after the initial access was gained. Duo prevents the unauthorized access from happening in the first place.
- Question 8Intermediate
Customer Conversations · Identify customer security challenges
During a sales discovery call, a customer mentions they are looking for a 'silver bullet' solution that can stop 100% of threats. What is the most appropriate and credible response for an Account Manager?
Show answer & explanation
Correct answer: D
It's crucial to set realistic expectations. The concept of a 'silver bullet' is a myth in cybersecurity. The most credible approach is to educate the customer on the need for a layered, defense-in-depth strategy. This shifts the focus from an impossible goal of 100% prevention to a more valuable goal of resilience: rapid detection, response, and recovery. This positions Cisco's integrated architecture as the superior approach.
- Question 9Beginner
Selling Cisco Security · Identify how Cisco supports practice development
True or False: The Cisco Security specialization for partners is primarily achieved by meeting a specific annual revenue target for security products.
Show answer & explanation
Correct answer: B
False. While revenue may be a factor in overall partner tiering, achieving a Cisco specialization like Security requires meeting specific criteria related to personnel and expertise. This includes having a required number of employees pass specific certification exams, such as the 700-760 (SAAM) for Account Managers and 700-765 for System Engineers, and demonstrating customer success.
- Question 10Intermediate
Cisco Security Solutions Portfolio · Identify components of Cisco’s best-in-class technology
What is the primary function of Cisco Talos within the Cisco Security ecosystem?
Show answer & explanation
Correct answer: D
Cisco Talos is one of the largest commercial threat intelligence teams in the world. It is the research and intelligence backbone for virtually all Cisco Security products. Talos analyzes massive amounts of telemetry data to identify, analyze, and block emerging threats, and this intelligence is fed directly into products like Secure Firewall, Umbrella, and Secure Endpoint to provide real-time protection.
Ready for the real thing?
The full 700-760 simulator has every exam-style question, timed mode, and instant scoring.