DON'T WANT TO MISS A THING?

Certification Exam Passing Tips

Latest exam news and discount info

Curated and up-to-date by our experts

Yes, send me the newsletter

Free Cisco 300-720 SESA Practice Questions 2026 Part1

Are you preparing for the Cisco 300-720 certification exam? SPOTO offers the Cisco 300-720 Premium File; all questions are aligned with the latest exam content and come with expert-provided answers. Our question banks cover the latest question types, core concepts, and detailed explanations, helping you familiarize yourself with the exam format and difficulty level. Whether you are reviewing core concepts or simulating a real exam environment, these resources will rapidly boost your confidence and readiness.
For over two decades, SPOTO has successfully helped numerous IT professionals secure their ideal positions at Fortune 500 companies. Download now to start practicing efficiently and ensure a high score on the actual exam. Don't miss this opportunity to pass your certification exam with ease!
Take other online exams

Question #1
Which Cisco Secure Email Threat Defense visibility and remediation mode is only available when using Cisco Secure Email Gateway as the message source?
A. ABasic Authentication
B. BNo Authentication
C. CMicrosoft 365 Authentication
D. DCisco Security Cloud Sign On
View answer
Correct Answer: B

View The Updated 300-720 Exam Questions

SPOTO Provides 100% Real 300-720 Exam Questions for You to Pass Your 300-720 Exam!

Question #2
Which process is skipped when an email is received from safedomain.com, which is on the safelist?
A. essage filter
B. ntivirus scanning
C. utbreak filter
D. ntispam scanning
View answer
Correct Answer: D
Question #3
What is the maximum message size that can be configured for encryption on the Cisco ESA?
A. 20 MB
B. 25 MB
C. 15 MB
D. 30 MB
View answer
Correct Answer: B
Question #4
Which two action types are performed by Cisco ESA message filters? (Choose two.)
A. non-final actions
B. filter actions
C. discard actions
D. final actions
E. quarantine actions
View answer
Correct Answer: AD
Question #5
What is the default behavior of any listener for TLS communication?
A. preferred-verify
B. off
C. preferred
D. required
View answer
Correct Answer: B
Question #6
Which action is a valid fallback when a client certificate is unavailable during SMTP authentication onCisco ESA?
A. DAP Query
B. MTP AUTH
C. MTP TLS
D. DAP BIND
View answer
Correct Answer: B
Question #7
When the Spam Quarantine is configured on the Cisco ESA, what validates end - users via LDAP during login to the End - User Quarantine?
A. Enabling the End - User Safelist/Blocklist feature
B. Spam Quarantine External Authentication Query
C. Spam Quarantine End - User Authentication Query
D. Spam Quarantine Alias Consolidation Query
View answer
Correct Answer: C
Question #8
Which SMTP extension does Cisco ESA support for email security?
A. TRN
B. TF8SMTP
C. IPELINING
D. TARTTLS
View answer
Correct Answer: D
Question #9
Email encryption is configured on a Cisco ESA that uses CRES.Which action is taken on a message when CRES is unavailable?
A. It is requeued
B. It is sent in clear text
C. It is dropped and an error message is sent to the sender
D. It is encrypted by a Cisco encryption appliance
View answer
Correct Answer: A
Question #10
Refer to the exhibit. Which configuration allows the Cisco ESA to scan for executables inside the zip and apply the action as per the content filter?
A. onfigure the recursion depth to a higher value
B. odify the content filter to look for attachment filetype of compressed
C. onfigure the maximum attachment size to a higher value
D. odify the content filter to look for
View answer
Correct Answer: A
Question #11
Which antispam feature is utilized to give end users control to allow emails that are spam to be delivered to their inbox, overriding any spam verdict and action on the Cisco ESA?
A. end user allow list
B. end user spam quarantine access
C. end user passthrough list
D. end user safelist
View answer
Correct Answer: D
Question #12
Email encryption is configured on a Cisco ESA that uses CRES.Which action is taken on a message when CRES is unavailable?
A. It is requeued
B. It is sent in clear text
C. It is dropped and an error message is sent to the sender
D. It is encrypted by a Cisco encryption appliance
View answer
Correct Answer: A
Question #13
Which two features of Cisco Email Security are added to a Sender Group to protect an organization against email threats? (Choose two.)
A. NetFlow
B. geolocation-based filtering
C. heuristic-based filtering
D. senderbase reputation filtering
E. content disarm and reconstruction
View answer
Correct Answer: BD
Question #14
Email encryption is configured on a Cisco ESA that uses CRES.Which action is taken on a message when CRES is unavailable?
A. It is requeued
B. It is sent in clear text
C. It is dropped and an error message is sent to the sender
D. It is encrypted by a Cisco encryption appliance
View answer
Correct Answer: A
Question #15
Which setting affects the aggressiveness of spam detection?
A. protection level
B. spam threshold
C. spam timeout
D. maximum depth of recursion scan
View answer
Correct Answer: B
Question #16
What is the order of virus scanning when multilayer antivirus scanning is configured?
A. The default engine scans for viruses first and the McAfee engine scans for viruses second
B. The Sophos engine scans for viruses first and the McAfee engine scans for viruses second
C. The McAfee engine scans for viruses first and the default engine scans for viruses second
D. The McAfee engine scans for viruses first and the Sophos engine scans for viruses second
View answer
Correct Answer: D
Question #17
Email encryption is configured on a Cisco ESA that uses CRES.Which action is taken on a message when CRES is unavailable?
A. It is requeued
B. It is sent in clear text
C. It is dropped and an error message is sent to the sender
D. It is encrypted by a Cisco encryption appliance
View answer
Correct Answer: A
Question #18
What is the default port to deliver emails from the Cisco ESA to the Cisco SMA using the centralized Spam Quarantine?
A. 025
B. 443
C. 025
D. 443
View answer
Correct Answer: C
Question #19
Which two features are applied to either incoming or outgoing mail policies? (Choose two.)
A. ndication of Compromise
B. pplication filtering
C. utbreak filters
D. ender reputation filtering
E. ntivirus
View answer
Correct Answer: CE
Question #20
What is the default behavior of any listener for TLS communication?
A. preferred-verify
B. off
C. preferred
D. required
View answer
Correct Answer: B
Question #21
When outbreak filters are configured, which two actions are used to protect users from outbreaks? (Choose two.)
A. edirect
B. eturn
C. rop
D. elay
E. bandon
View answer
Correct Answer: AD
Question #22
Which predefined DLP category must be used by a network administrator to ensure that a company employee cannot send credit card information outside the company?
A. Company Confidential
B. Regulatory Compliance
C. Intellectual Property Protection
D. Acceptable Use
View answer
Correct Answer: B
Question #23
What is the default behavior of any listener for TLS communication?
A. preferred-verify
B. off
C. preferred
D. required
View answer
Correct Answer: B
Question #24
Which benefit does enabling external spam quarantine on Cisco SMA provide?
A. ability to back up spam quarantine from multiple Cisco ESAs to one central console
B. access to the spam quarantine interface on which a user can release, duplicate, or delete
C. ability to scan messages by using two engines to increase a catch rate
D. ability to consolidate spam quarantine data from multiple Cisco ESA to one central console
View answer
Correct Answer: D
Question #25
When the Cisco ESA is configured to perform antivirus scanning, what is the default timeout value?
A. 30 seconds
B. 90 seconds
C. 60 seconds
D. 120 seconds
E. Reveal Answer
View answer
Correct Answer: C
Question #26
An engineer must modify the altsrchost table on a Cisco Secure Email Gateway. Messages destined for a domain named @cisco.com must be mapped to NewInterface with an IP address of 10.10.10.1.What must be added to the table?
A. ewInterface @cisco
B. isco
C. isco
D. cisco
View answer
Correct Answer: D
Question #27
When DKIM signing is configured, which DNS record must be updated to load the DKIM public signing key?
A. AAA record
B. TR record
C. XT record
D. X record
View answer
Correct Answer: C
Question #28
Which two query types are available when an LDAP profile is configured? (Choose two.)
A. proxy consolidation
B. user
C. recursive
D. group
E. routing
View answer
Correct Answer: BE
Question #29
An organization wants to prevent proprietary patent documents from being shared externally via email. The network administrator reviewed the DLP policies on the Cisco Secure Email Gateway and could not find an existing policy with the appropriate matching patterns. Which type of DLP policy template must be used to create a policy that meets this requirement?
A. privacy protection
B. custom policy
C. regulatory compliance
D. acceptable use
View answer
Correct Answer: B
Question #30
Which two are configured in the DMARC verification profile? (Choose two.)
A. name of the verification profile
B. minimum number of signatures to verify
C. ESA listeners to use the verification profile
D. message action into an incoming or outgoing content filter
E. message action to take when the policy is reject/quarantine
F. Reveal Answer
View answer
Correct Answer: AE
Question #31
What is the default behavior of any listener for TLS communication?
A. preferred-verify
B. off
C. preferred
D. required
View answer
Correct Answer: B
Question #32
Which action must be taken before a custom quarantine that is being used can be deleted?
A. elete the quarantine that is assigned to a filter
B. elete the quarantine that is not assigned to a filter
C. elete only the unused quarantine
D. emove the quarantine from the message action of a filter
View answer
Correct Answer: D
Question #33
When the Spam Quarantine is configured on the Cisco ESA, what validates end-users via LDAP during login to the End-User Quarantine?
A. Enabling the End-User Safelist/Blocklist feature
B. Spam Quarantine External Authentication Query
C. Spam Quarantine End-User Authentication Query
D. Spam Quarantine Alias Consolidation Query
View answer
Correct Answer: C
Question #34
What are two phases of the Cisco ESA email pipeline? (Choose two.)
A. reject
B. workqueue
C. action
D. delivery
E. quarantine
View answer
Correct Answer: BD
Question #35
Email encryption is configured on a Cisco ESA that uses CRES.Which action is taken on a message when CRES is unavailable?
A. It is requeued
B. It is sent in clear text
C. It is dropped and an error message is sent to the sender
D. It is encrypted by a Cisco encryption appliance
View answer
Correct Answer: A
Question #36
An engineer must implement policies in Cisco Secure Email Gateway to prevent suspicious spam messages from being delivered to executives group. Messages that arrive from public email addresses from the yahoo.com or gmail.com domains must be redirected to the IT department. Which two configuration actions must be taken to meet the requirement? (Choose two.)
A. Add a mail policy to match the sender domains as @ yahoo com and @ gmail com
B. Configure the policy to match executive recipients either via email address or LDAP group
C. Implement a mail policy to match the sender domains as recipients as executives
D. Set up a mail policy to match the sender domains as senders as 'yahoo com and *gmail
E. Apply a mail policy to match the sender domains as senders not as executives com
View answer
Correct Answer: AB
Question #37
Which of the following two statements are correct about the large file attachments (greater than 25MB) feature in Cisco Secure Email Encryption Service? (Choose two.)
A. Large file attachments can only be sent using the websafe portal
B. This feature allows users to send up to 50MB of attachments in a secure email
C. Large file attachments will be sent as a securedoc attachment
D. Large file attachments can only be sent using the Cisco Secure Email Add-In
E. This feature can only be enabled if the Read from Message feature is enabled
F. Reveal Answer
View answer
Correct Answer: CE
Question #38
Which two features of Cisco Email Security are added to a Sender Group to protect an organization against email threats? (Choose two.)
A. NetFlow
B. geolocation-based filtering
C. heuristic-based filtering
D. senderbase reputation filtering
E. content disarm and reconstruction
View answer
Correct Answer: BD
Question #39
Email encryption is configured on a Cisco ESA that uses CRES.Which action is taken on a message when CRES is unavailable?
A. It is requeued
B. It is sent in clear text
C. It is dropped and an error message is sent to the sender
D. It is encrypted by a Cisco encryption appliance
View answer
Correct Answer: A
Question #40
An engineer must limit responses from the gateway that are directed to invalid email addresses.How should the LDAP server be configured to accomplish this goal?
A. alidate the sender email address via an LDAP query during the SMTP conversation
B. alidate the sender email address via SMTP Call-Ahead to query an external SMTP server
C. imit the number of invalid responses per recipient to stop responses after crossing the threshold
D. imit the number of invalid recipients per sender to stop responses after crossing the threshold
View answer
Correct Answer: D
Question #41
Which ESA function maintains a set of rules that control incoming connections from remote hosts for a listener?
A. AT
B. AT
C. DAP
D. ender group
E. EST
View answer
Correct Answer: B
Question #42
An email administrator observes that legitimate newsletters are being quarantined as spam.Users still want to receive these messages but would prefer them categorized separately. Which ESA feature is most appropriate?
A. DAP Routing
B. raymail Detection and Policies
C. ender Verification
D. MTP Authentication
View answer
Correct Answer: B
Question #43
What must be configured to allow the Cisco ESA to encrypt an email using the Cisco Registered Envelope Service?
A. rovisioned email encryption profile
B. essage encryption from a content filter that select "Message Encryption" over TLS
C. essage encryption from the mail flow policies with "CRES" selected
D. ontent filter to forward the email to the Cisco Registered Envelope server
View answer
Correct Answer: B
Question #44
An organization wants to use its existing Cisco ESA to host a new domain and enforce a separate corporate policy for that domain.What should be done on the Cisco ESA to achieve this?
A. Use the smtproutes command to configure a SMTP route for the new domain
B. Use the deli very config command to configure mail delivery for the new domain
C. Use the dsestconf command to add a separate destination for the new domain
D. Use the altrchost command to add a separate gateway for the new domain
E. Reveal Answer
View answer
Correct Answer: A
Question #45
What is the default behavior of any listener for TLS communication?
A. preferred-verify
B. off
C. preferred
D. required
View answer
Correct Answer: B
Question #46
Refer to the exhibit. Refer to the exhibit. How does a Cisco Secure Email Gateway handle an email that is identified both as spam positive and outbreak positive by outbreak filters?
A. AThe email is sent to outbreak quarantine and is rescanned for spam before being released
B. BThe email is sent only to the outbreak quarantine
C. CThe email is sent to spam quarantine and outbreak quarantine
D. DThe email is sent only to the spam quarantine
View answer
Correct Answer: B
Question #47
Which feature utilizes sensor information obtained from Talos intelligence to filter email servers connecting into the Cisco ESA?
A. enderBase Reputation Filtering
B. onnection Reputation Filtering
C. alos Reputation Filtering
D. pamCop Reputation Filtering
View answer
Correct Answer: A

View Answers after Submission

Please submit your email and WhatsApp to get the answers of questions.

Note: Please make sure your email ID and Whatsapp are valid so that you can get the correct exam results.

Email:
Whatsapp/phone number:
Contact Us