700-846 · Question #12
Why is it essential for Cisco Cyber Vision Sensors to be embedded in the network infrastructure?
The correct answer is D. to provide visibility to the network only when going through the DMZ firewall. There appears to be an error in the stated correct answer. Based on Cisco Cyber Vision documentation and architecture, the actual correct answer is B, not D. Cisco Cyber Vision Sensors are embedded directly inside Cisco industrial network equipment (switches, routers…
Question
Why is it essential for Cisco Cyber Vision Sensors to be embedded in the network infrastructure?
Options
- Ato enable out of band network
- Bto enable visibility to all network devices and communications
- Cto control cost
- Dto provide visibility to the network only when going through the DMZ firewall
How the community answered
(59 responses)- A2% (1)
- B2% (1)
- C3% (2)
- D93% (55)
Explanation
There appears to be an error in the stated correct answer. Based on Cisco Cyber Vision documentation and architecture, the actual correct answer is B, not D.
Cisco Cyber Vision Sensors are embedded directly inside Cisco industrial network equipment (switches, routers, firewalls) so they passively monitor all traffic flowing through the infrastructure - giving security teams complete visibility into every OT/ICS device and communication without requiring separate appliances or SPAN ports. This is the core architectural value proposition: deep, pervasive visibility across the entire industrial network.
Why the distractors are wrong:
- A (out-of-band network): Embedding sensors enables in-band passive monitoring, not out-of-band architecture.
- C (cost control): While embedded sensors reduce hardware costs, that is not the essential reason for the architecture.
- D (DMZ firewall only): This describes limited visibility scoped to one chokepoint - the opposite of the goal. Restricting visibility to the DMZ would leave the entire OT network blind.
Memory tip: Think "embedded = everywhere." Because sensors live inside the switches and routers, they see every conversation on the network - not just traffic that crosses a single boundary like a DMZ firewall.
Recommendation: If this question appears on an official Cisco exam (e.g., CyberOps, CismaIoT), flag it - D is likely a misprint or data entry error in whatever question bank you're using. The answer should be B.
Topics
Community Discussion
No community discussion yet for this question.