🃏 SCOR Security Flashcards

Test your CCNP Security Core knowledge.

About This Flashcard Deck

This flashcard deck contains 10 cards covering key SCOR Security concepts for the SCOR exam. Test your CCNP Security Core knowledge. Use active recall by attempting to answer each question before revealing the answer.

Card 1 of 10

Question

What is the difference between IPS and IDS?

Click to reveal answer

Answer

IPS is inline (blocks attacks). IDS is passive/out-of-band (detects and alerts only).

Click to flip back

All SCOR Security Flashcards

1

Q: What is the difference between IPS and IDS?

A: IPS is inline (blocks attacks). IDS is passive/out-of-band (detects and alerts only).

2

Q: What is Cisco Umbrella?

A: A cloud-delivered DNS security service that blocks malicious domains before a connection is established.

3

Q: What is TrustSec?

A: Cisco security framework using SGTs (Security Group Tags) to classify and enforce policy based on identity, not IP addresses.

4

Q: What is the difference between Transport and Tunnel mode in IPsec?

A: Transport: encrypts only the payload (used for host-to-host). Tunnel: encrypts the entire original packet and adds new IP header (used for site-to-site VPNs).

5

Q: What is a CASB?

A: Cloud Access Security Broker — sits between users and cloud services to enforce security policies, visibility, compliance, and data protection.

6

Q: What does Cisco AMP for Endpoints do?

A: Advanced Malware Protection: continuous monitoring, retrospective alerting, file trajectory, sandboxing, and IoC detection on endpoints.

7

Q: What is 802.1X?

A: Port-based NAC: supplicant (client), authenticator (switch), authentication server (RADIUS/ISE). EAP methods carry credentials.

8

Q: What is a zero-trust architecture?

A: Never trust, always verify — every access request is authenticated and authorized regardless of network location.

9

Q: What is pxGrid?

A: Platform Exchange Grid — Cisco ISE shares context (user, device, threat) with partner ecosystem products for coordinated response.

10

Q: What is the ESA used for?

A: Cisco Secure Email (ESA) — email security appliance that filters spam, phishing, malware, and enforces DLP policies on SMTP traffic.

Cisco Flashcard Study Strategy

Cisco exams heavily test protocol operations and configuration details. Use these flashcards to drill port numbers, protocol behaviours, and administrative distances. Pair flashcard sessions with Packet Tracer labs — when you encounter a card about OSPF neighbour states, open a lab and verify each state transition on a live topology. This combination of memorisation and practice builds the deep understanding Cisco exams demand.

More SCOR Flashcard Decks