Security, Specialist (JNCIS-SEC) Certification

Security, Specialist (JNCIS-SEC) Certification is designed for experienced networking professionals with intermediate knowledge of the Juniper Networks Junos OS for SRX Series devices, this written exam verifies the candidate’s understanding of security technologies and related platform configuration and troubleshooting skills.It is recommended you get your JNCIA-SEC certification before taking JNCIS-SEC certification.

JNCIS-SEC JN0-334 Exam Details

Exam code: JN0-334
Written exam
Administered by Pearson VUE
Exam length: 90 minutes
Exam type: 65 multiple-choice questions
Pass/fail status is available immediately
Junos Software Release: 19.1

Security, Specialist (JNCIS-SEC) JN0-334 Exam Objectives

Application Security
Security Policies(Advanced)
Advance Threat Prevention(ATP)
High Availability(HA) Clustering
Virtual SRX or cSRX
Juniper Identify Management Service(JIMS)
SSL Proxy
Juniper Secure Analytics(JSA)

View Online Security, Specialist (JNCIS-SEC) Exam JN0-334 Free Questions

1.What are two examples of RTOs? (Choose two.)
A. IPsec SA entries
B. session table entries
C. fabric link probes
D. control link heartbeats
Answer: CD

2.Click the Exhibit button.

Referring to the exhibit, you want to deploy Sky ATP with Policy Enforcer to block infected hosts at the access layer.
To complete this task, where should you configure the default gateway for the User-1 device?

A. the irb interface on QFX-2
B. the irb interface on QFX-1
C. the interface of QFX-1 that connects to User-1
D. the interface on SRX-1 that connects to QFX-2
Answer: B

3.Click the Exhibit button.

You need to have the JATP solution analyzer .jar, .xls, and .doc files.
Referring to the exhibit, which two file types must be selected to accomplish this task? (Choose two.)

A. Java
B. library
C. document
D. executable
Answer: BC

4.Which three features are parts of Juniper Networks’ AppSecure suite? (Choose three.)
A. AppQoE
C. Secure Application Manager
D. AppQoS
E. AppFormix
Answer: ABD

5.Which two statements are correct about server-protection SSP proxy? (Choose two.)
A. The server-protection SSL proxy intercepts the server certificate.
B. The server-protection SSL proxy is also known as SSL reverse proxy.
C. The server-protection SSL proxy forwards the server certificate after modification.
D. The server-protection SSL proxy acts as the server from the client’s perspective.
Answer: BD

6.Which statement is true about high availability (HA) chassis clusters for the SRX Series device?
A. Cluster nodes require an upgrade to HA compliant Routing Engines.
B. Cluster nodes must be connected through a Layer 2 switch.
C. There can be active/passive or active/active clusters.
D. HA clusters must use NAT to prevent overlapping subnets between the nodes.
Answer: C