About the Exam

300-720 SESA is a 90-minute Cisco Security exam focused on Cisco Secure Email Gateway administration and email threat protection. It covers spam and antispam, message filters, data loss prevention, LDAP, email authentication and encryption, and system quarantines and delivery methods. Passing earns the Cisco Certified Specialist - Email Content Security certification and can be used toward CCNP Security requirements and recertification.

Exam Topics

  • Cisco Email Security Appliance Administration15%
  • Spam Control with Talos SenderBase and Antispam15%
  • Content and Message filters20%
  • LDAP and SMTP Sessions15%
  • Email Authentication and Encryption20%
  • System Quarantines and Delivery Methods15%

How to Use This Practice Exam

  1. Browse — Read each question, select your answer, and reveal the explanation.
  2. Exam Mode — Simulate real exam conditions with a timed session and score report.
  3. Learn Mode — Spaced repetition schedules questions you struggle with for long-term retention.

Download the Full Exam PDF

Get every question and answer in a clean, printable PDF built for offline study. Purchase once, keep permanent access, and re-download the latest version anytime.

Last updated August 20, 2026 at 11:58 PM

Topic filter
Retired questions
Question sort
Questions per page

QuestionQ1

Email Authentication and Encryption

Email encryption is configured on a Cisco ESA using CRES.

What action is taken for a message when CRES is unavailable?

Explanation

Cisco ESA retains the message in its queue and retries encryption when the Cisco Registered Envelope Service is unavailable, up to the configured maximum time that a message may remain queued awaiting encryption. Only after that timeout can encryption failure handling notify the sender.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!

QuestionQ2

Spam Control with Talos SenderBase and Antispam

Which two Cisco Email Security features can be added to a Sender Group to protect an organization from email threats?

Choose two
Explanation

Cisco Email Security Sender Groups can use geolocation to classify or reject email servers by country, and they can use Cisco SenderBase Reputation Scores to apply policies based on a sender’s reputation. These controls operate at the sender/connection level to filter unwanted email traffic.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!

QuestionQ3

Spam Control with Talos SenderBase and Antispam

Which process is bypassed when an email arrives from safedomain.com, which is on the safelist?

Explanation

Cisco Secure Email Gateway evaluates the safelist immediately before anti-spam scanning. Messages from a safelisted sender skip anti-spam scanning but continue through antivirus scanning and other configured email-pipeline processing.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!

QuestionQ4

Content and Message filters

An analyst creates a new content dictionary for use with Forged Email Detection.

Which entry will be added to the dictionary?

Explanation

Cisco Secure Email Forged Email Detection uses content-dictionary entries representing users’ names to compare against the From header. The configuration requires entering the user’s name, rather than an email address, and prohibits regular expressions.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!

QuestionQ5

Email Authentication and Encryption

Which two steps are used to configure Forged Email Detection?

Choose two
Explanation

Forged Email Detection compares the message’s From header with user names in a content dictionary. Configure that dictionary with friendly names, then configure an incoming content or message filter that uses the Forged Email Detection rule and the dictionary.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!
Know a question that should be here? Contribute to this exam
Back home