DON'T WANT TO MISS A THING?

Certification Exam Passing Tips

Latest exam news and discount info

Curated and up-to-date by our experts

Yes, send me the newsletter

Free Cisco 300-720 SESA Practice Questions 2026 Part2

Are you preparing for the Cisco 300-720 certification exam? SPOTO offers the Cisco 300-720 Premium File; all questions are aligned with the latest exam content and come with expert-provided answers. Our question banks cover the latest question types, core concepts, and detailed explanations, helping you familiarize yourself with the exam format and difficulty level. Whether you are reviewing core concepts or simulating a real exam environment, these resources will rapidly boost your confidence and readiness.
For over two decades, SPOTO has successfully helped numerous IT professionals secure their ideal positions at Fortune 500 companies. Download now to start practicing efficiently and ensure a high score on the actual exam. Don't miss this opportunity to pass your certification exam with ease!
Take other online exams

Question #1
Which two action types are performed by Cisco ESA message filters? (Choose two.)
A. non-final actions
B. filter actions
C. discard actions
D. final actions
E. quarantine actions
View answer
Correct Answer: AD

View The Updated 300-720 Exam Questions

SPOTO Provides 100% Real 300-720 Exam Questions for You to Pass Your 300-720 Exam!

Question #2
When email authentication is configured on Cisco ESA, which two key types should be selected on the signing profile? (Choose two.)
A. KIM
B. ublic Keys
C. omain Keys
D. ymmetric Keys
E. rivate Keys
View answer
Correct Answer: AC
Question #3
What is the order of virus scanning when multilayer antivirus scanning is configured?
A. The default engine scans for viruses first and the McAfee engine scans for viruses second
B. The Sophos engine scans for viruses first and the McAfee engine scans for viruses second
C. The McAfee engine scans for viruses first and the default engine scans for viruses second
D. The McAfee engine scans for viruses first and the Sophos engine scans for viruses second
View answer
Correct Answer: D
Question #4
Which antispam feature is utilized to give end users control to allow emails that are spam to be delivered to their inbox, overriding any spam verdict and action onthe Cisco ESA?
A. end user allow list
B. end user spam quarantine access
C. end user passthrough list
D. end user safelist
View answer
Correct Answer: B
Question #5
When a network engineer is troubleshooting a mail flow issue, they discover that some emails are rejected with an SMTP code of 451 and the error message "#4.7.1 Unable to perform DMARC verification". In the DMARC verification profile on the Cisco Secure Email Gateway appliance, which action must be set for messages that result in temporary failure to prevent these emails from being rejected?
A. ccept
B. o Action
C. gnore
D. uarantine
View answer
Correct Answer: A
Question #6
How does the graymail safe unsubscribe feature function?
A. t strips the malicious content of the URI before unsubscribing
B. t checks the URI reputation and category and allows the content filter to take an action on it
C. t redirects the end user who clicks the unsubscribe button to a sandbox environment to allow a safe unsubscribe
D. t checks the reputation of the URI and performs the unsubscribe process on behalf of the end user
View answer
Correct Answer: D
Question #7
Which benefit does enabling external spam quarantine on Cisco SMA provide?
A. bility to back up spam quarantine from multiple Cisco ESAs to one central console
B. ccess to the spam quarantine interface on which a user can release, duplicate, or delete
C. bility to scan messages by using two engines to increase a catch rate
D. bility to consolidate spam quarantine data from multiple Cisco ESA to one central console
View answer
Correct Answer: D
Question #8
An engineer must share threat reporting information from Cisco Secure Email Gateway to Cisco SecureX.
A. SNMP
B. Cloud Service Settings
C. System Monitor
D. Security Services Exchange
View answer
Correct Answer: D
Question #9
Which two steps configure Forged Email Detection? (Choose two.)
A. Configure a content dictionary with executive email addresses
B. Configure a filter to use the Forged Email Detection rule and dictionary
C. Configure a filter to check the Header From value against the Forged Email Detection dictionary
D. Enable Forged Email Detection on the Security Services page
E. Configure a content dictionary with friendly names
View answer
Correct Answer: BE
Question #10
Which two steps configure Forged Email Detection? (Choose two.)
A. Configure a content dictionary with executive email addresses
B. Configure a filter to use the Forged Email Detection rule and dictionary
C. Configure a filter to check the Header From value against the Forged Email Detection dictionary
D. Enable Forged Email Detection on the Security Services page
E. Configure a content dictionary with friendly names
View answer
Correct Answer: BE
Question #11
Which suboption must be selected when LDAP is configured for Spam Quarantine End-User Authentication?
A. Designate as the active query
B. Update Frequency
C. Server Priority
D. Entity ID
View answer
Correct Answer: A
Question #12
Which benefit does enabling external spam quarantine on Cisco SMA provide?
A. ability to back up spam quarantine from multiple Cisco ESAs to one central console
B. access to the spam quarantine interface on which a user can release, duplicate, or delete
C. ability to scan messages by using two engines to increase a catch rate
D. ability to consolidate spam quarantine data from multiple Cisco ESA to one central console
View answer
Correct Answer: D
Question #13
Which two factors must be considered when message filter processing is configured? (Choose two.)
A. message-filter order
B. lateral processing
C. structure of the combined packet
D. mail policies
E. MIME structure of the message
View answer
Correct Answer: AE
Question #14
Which SMTP extension does Cisco ESA support for email security?
A. ETRN
B. UTF8SMTP
C. PIPELINING
D. STARTTLS
View answer
Correct Answer: D
Question #15
Which process is skipped when an email is received from safedomain.com, which is on the safelist?
A. message filter
B. antivirus scanning
C. outbreak filter
D. antispam scanning
View answer
Correct Answer: D
Question #16
Which two steps configure Forged Email Detection? (Choose two.)
A. Configure a content dictionary with executive email addresses
B. Configure a filter to use the Forged Email Detection rule and dictionary
C. Configure a filter to check the Header From value against the Forged Email Detection dictionary
D. Enable Forged Email Detection on the Security Services page
E. Configure a content dictionary with friendly names
View answer
Correct Answer: BE
Question #17
Which SMTP extension does Cisco ESA support for email security?
A. ETRN
B. UTF8SMTP
C. PIPELINING
D. STARTTLS
View answer
Correct Answer: D
Question #18
Which two features of Cisco Email Security are added to a Sender Group to protect an organization against email threats? (Choose two.)
A. NetFlow
B. geolocation-based filtering
C. heuristic-based filtering
D. senderbase reputation filtering
E. content disarm and reconstruction
View answer
Correct Answer: BD
Question #19
What is the default behavior of any listener for TLS communication?
A. preferred-verify
B. off
C. preferred
D. required
View answer
Correct Answer: B
Question #20
Which two steps configure Forged Email Detection? (Choose two.)
A. Configure a content dictionary with executive email addresses
B. Configure a filter to use the Forged Email Detection rule and dictionary
C. Configure a filter to check the Header From value against the Forged Email Detection dictionary
D. Enable Forged Email Detection on the Security Services page
E. Configure a content dictionary with friendly names
View answer
Correct Answer: BE
Question #21
What are two prerequisites for implementing undesirable URL protection in Cisco ESA? (Choosetwo.)
A. nable outbreak filters
B. nable email relay
C. nable antispam scanning
D. nable port bouncing
E. nable antivirus scanning
View answer
Correct Answer: AC
Question #22
Which two query types are available when an LDAP profile is configured? (Choose two.)
A. roxy consolidation
B. ser
C. ecursive
D. roup
E. outing
View answer
Correct Answer: BE
Question #23
Which two features of Cisco Email Security are added to a Sender Group to protect an organization against email threats? (Choose two.)
A. NetFlow
B. geolocation-based filtering
C. heuristic-based filtering
D. senderbase reputation filtering
E. content disarm and reconstruction
View answer
Correct Answer: BD
Question #24
What is the maximum message size that can be configured for encryption on the Cisco ESA?
A. 20 MB
B. 25 MB
C. 15 MB
D. 30 MB
View answer
Correct Answer: A
Question #25
Which type of attack is prevented by configuring file reputation filtering and file analysis features?
A. enial of service
B. ero-day
C. ackscatter
D. hishing
View answer
Correct Answer: B
Question #26
Which action must be taken before a custom quarantine that is being used can be deleted?
A. Delete the quarantine that is assigned to a filter
B. Delete the quarantine that is not assigned to a filter
C. Delete only the unused quarantine
D. Remove the quarantine from the message action of a filter
View answer
Correct Answer: D
Question #27
Which two steps are needed to disable local spam quarantine before external quarantine is enabled? (Choose two.)
A. ncheck the Enable Spam Quarantine check box
B. elect Monitor and click Spam Quarantine
C. heck the External Safelist/Blocklist check box
D. elect External Spam Quarantine and click on Configure
E. elect Security Services and click Spam Quarantine
View answer
Correct Answer: AB
Question #28
Spreadsheets containing credit card numbers are being allowed to bypass the Cisco ESA.Which outgoing mail policy feature should be configured to catch this content before it leaves the network?
A. file reputation filtering
B. outbreak filtering
C. data loss prevention
D. file analysis
E. Reveal Answer
View answer
Correct Answer: C
Question #29
Which benefit does enabling external spam quarantine on Cisco SMA provide?
A. ability to back up spam quarantine from multiple Cisco ESAs to one central console
B. access to the spam quarantine interface on which a user can release, duplicate, or delete
C. ability to scan messages by using two engines to increase a catch rate
D. ability to consolidate spam quarantine data from multiple Cisco ESA to one central console
View answer
Correct Answer: D
Question #30
Which two features of Cisco Email Security are added to a Sender Group to protect an organization against email threats? (Choose two.)
A. NetFlow
B. geolocation-based filtering
C. heuristic-based filtering
D. senderbase reputation filtering
E. content disarm and reconstruction
View answer
Correct Answer: BD
Question #31
Which setting affects the aggressiveness of spam detection?
A. protection level
B. spam threshold
C. spam timeout
D. maximum depth of recursion scan
View answer
Correct Answer: B
Question #32
What is the default behavior of any listener for TLS communication?
A. preferred-verify
B. off
C. preferred
D. required
View answer
Correct Answer: B
Question #33
During troubleshooting, Message Tracking shows "Dropped by Content Filter." What should the administrator conclude?
A. DAP verification failed
B. he remote server rejected the message
C. he message matched a Content Filter action configured to drop mail
D. nti-virus deleted the message automatically
View answer
Correct Answer: C
Question #34
Which two features of Cisco Email Security are added to a Sender Group to protect an organization against email threats? (Choose two.)
A. NetFlow
B. geolocation-based filtering
C. heuristic-based filtering
D. senderbase reputation filtering
E. content disarm and reconstruction
View answer
Correct Answer: BD
Question #35
Which cloud service provides a reputation verdict for email messages based on the sender domain and other attributes?
A. Cisco AppDynamics
B. Cisco Secure Email Threat Defense
C. Cisco Secure Cloud Analytics
D. Cisco Talos
E. Reveal Answer
View answer
Correct Answer: D
Question #36
An organization wants to prevent proprietary patent documents from being shared externally via email. The network administrator reviewed the DLP policies on the Cisco Secure Email Gateway and could not find an existing policy with the appropriate matching patterns. Which type of DLP policy template must be used to create a policy that meets this requirement?
A. privacy protection
B. custom policy
C. regulatory compliance
D. acceptable use
E. Reveal Answer
View answer
Correct Answer: B
Question #37
Which two steps configure Forged Email Detection? (Choose two.)
A. Configure a content dictionary with executive email addresses
B. Configure a filter to use the Forged Email Detection rule and dictionary
C. Configure a filter to check the Header From value against the Forged Email Detection dictionary
D. Enable Forged Email Detection on the Security Services page
E. Configure a content dictionary with friendly names
View answer
Correct Answer: BE
Question #38
Which setting affects the aggressiveness of spam detection?
A. protection level
B. spam threshold
C. spam timeout
D. maximum depth of recursion scan
View answer
Correct Answer: B
Question #39
Which action must be taken before a custom quarantine that is being used can be deleted?
A. Delete the quarantine that is assigned to a filter
B. Delete the quarantine that is not assigned to a filter
C. Delete only the unused quarantine
D. Remove the quarantine from the message action of a filter
View answer
Correct Answer: D
Question #40
An analyst creates a new content dictionary to use with Forged Email Detection.Which entry will be added into the dictionary?
A. ycompany
B. lpha Beta
C. Alpha\ Beta$
D. email protected]
View answer
Correct Answer: B
Question #41
When the Spam Quarantine is configured on the Cisco ESA, what validates end-users via LDAP during login to the End-User Quarantine?
A. Enabling the End-User Safelist/Blocklist feature
B. Spam Quarantine External Authentication Query
C. Spam Quarantine End-User Authentication Query
D. Spam Quarantine Alias Consolidation Query
View answer
Correct Answer: C
Question #42
Which two features of Cisco Email Security are added to a Sender Group to protect an organization against email threats? (Choose two.)
A. NetFlow
B. geolocation-based filtering
C. heuristic-based filtering
D. senderbase reputation filtering
E. content disarm and reconstruction
View answer
Correct Answer: BD
Question #43
When virtual gateways are configured, which two distinct attributes are allocated to each virtual gateway address? (Choose two.)
A. domain
B. IP address
C. DNS server address
D. DHCP server address
E. external spam quarantine
View answer
Correct Answer: AB
Question #44
Which two steps configure Forged Email Detection? (Choose two.)
A. Configure a content dictionary with executive email addresses
B. Configure a filter to use the Forged Email Detection rule and dictionary
C. Configure a filter to check the Header From value against the Forged Email Detection dictionary
D. Enable Forged Email Detection on the Security Services page
E. Configure a content dictionary with friendly names
View answer
Correct Answer: BE
Question #45
Which two steps are needed to disable local spam quarantine before external quarantine is enabled? (Choose two.)
A. Uncheck the Enable Spam Quarantine check box
B. Select Monitor and click Spam Quarantine
C. Check the External Safelist/Blocklist check box
D. Select External Spam Quarantine and click on Configure
E. Select Security Services and click Spam Quarantine
View answer
Correct Answer: AB
Question #46
Which two features of Cisco Email Security are added to a Sender Group to protect an organization against email threats? (Choose two.)
A. NetFlow
B. geolocation-based filtering
C. heuristic-based filtering
D. senderbase reputation filtering
E. content disarm and reconstruction
View answer
Correct Answer: BD
Question #47
An administrator notices that the Cisco Secure Email Gateway delivery queue on an appliance is consistently full. After further investigation, it is determined that the IP addresses currently in use by appliance are being rate-limited by some destinations. The administrator creates a new interface with an additional IP address using virtual gateway technology, but the issue is not solved Which configuration change resolves the issue?
A. Use the CLI command altsrchost to set the new interface as the source IP address for all mail
B. Use the CLI command loadbalance auto to enable mail delivery over all interfaces
C. Use the CLI command alt-src-host to set the new interface as a possible delivery candidate
D. Use the CLI command deliveryconfig to set the new interface as the primary interface for mail delivery
View answer
Correct Answer: D
Question #48
Which two features of Cisco Email Security are added to a Sender Group to protect an organization against email threats? (Choose two.)
A. NetFlow
B. geolocation-based filtering
C. heuristic-based filtering
D. senderbase reputation filtering
E. content disarm and reconstruction
View answer
Correct Answer: BD

View Answers after Submission

Please submit your email and WhatsApp to get the answers of questions.

Note: Please make sure your email ID and Whatsapp are valid so that you can get the correct exam results.

Email:
Whatsapp/phone number:
Contact Us