CCNP Security SISE Practice Exams

300-715 SISE
⭐ Most popularAdvancedProfessionalSecurity Engineer

Implementing and Configuring Cisco Identity Services Engine — the CCNP Security concentration exam covering ISE architecture and deployment, policy enforcement with 802.1X and MAB, web authentication and guest services, profiling, BYOD onboarding, endpoint compliance and posture, and TACACS+ network access device administration.

90
minutes
82%
passing score
$300
exam fee

Start preparing today

5 flashcard sets · 5 learning tests · 2 timed exams · 200-question bank

Start Free Practice →

Overview

What this certification is and how the exam works.

The 300-715 SISE exam — Implementing and Configuring Cisco Identity Services Engine — is one of the concentration exams that, combined with the 350-701 SCOR core exam, earns the CCNP Security certification. It validates the ability to design, deploy, and operate ISE as the identity and access control platform for a network. The blueprint covers architecture and deployment (10%) — personas, distributed designs, certificates, licensing, and backups; policy enforcement (25%) — policy sets, authentication and authorization, identity stores, EAP methods, authorization profiles, and Change of Authorization; web authentication and guest services (15%) — central and local web auth, guest types, sponsor and self-registration portals; profiler (15%) — probes, profile policies, certainty factors, and the feed service; BYOD (15%) — single and dual SSID onboarding, native supplicant provisioning, and the internal CA; endpoint compliance (10%) — posture conditions, requirements, remediation, and client provisioning; and network access device administration (10%) — TACACS+ device admin policy sets, shell profiles, and command sets. The exam runs 90 minutes.

Why should I take the exam?

What this credential does for your career.

  • 1Completes CCNP Security when paired with the 350-701 SCOR core exam
  • 2ISE is the control point for identity-based access in most Cisco enterprise networks, so the skills apply immediately
  • 3Covers the full identity stack — 802.1X, guest, BYOD, posture, and device administration — rather than a single feature
  • 4Builds the policy-set and Change of Authorization fluency that separates a working deployment from a fragile one
  • 5TACACS+ device administration knowledge transfers directly to hardening network infrastructure management

Skills measured

What you need to know to pass this exam.

  • Design ISE deployments using the PAN, MnT, PSN, and pxGrid personas across standalone and distributed models
  • Manage ISE certificates for admin, EAP, portal, and pxGrid usage, including CSRs and Subject Alternative Names
  • Apply ISE licensing tiers and plan node capacity, backups, patching, and upgrades
  • Build policy sets with authentication and authorization rules, conditions, and results
  • Integrate identity stores — internal, Active Directory, LDAP, ODBC, RADIUS token, and SAML — and sequence them
  • Choose and troubleshoot EAP methods including EAP-TLS, PEAP, EAP-FAST, TEAP, and EAP chaining
  • Configure authorization profiles delivering VLANs, downloadable ACLs, SGTs, and web redirects
  • Apply Change of Authorization correctly for reauthentication, port bounce, and session termination
  • Deploy guest services with central and local web authentication, hotspot, self-registration, and sponsor portals
  • Configure profiling probes, endpoint profile policies, certainty factors, logical profiles, and the feed service
  • Implement BYOD onboarding with single and dual SSID flows, native supplicant provisioning, and the ISE internal CA
  • Build posture policy with conditions, requirements, remediations, client provisioning, and posture reassessment
  • Implement TACACS+ device administration with device admin policy sets, shell profiles, and command sets

About our 300-715 SISE practice exams

Our CCNP Security SISE 300-715 SISE question bank holds 200 exam-style questions with a written explanation on every answer, mapped to the seven exam domains published for 300-715 SISE, covering Architecture and Deployment, Policy Enforcement and Web Auth and Guest Services, and four more.

Alongside the bank there are two full-length timed exams at the real 90-minute limit and 82% pass mark, plus five topic-based learning tests for working a single domain at a time. Randomised mock exams are dealt on demand from the full 200-question pool, so you never run out of fresh papers.

Questions
200
Exam domains
7
Timed exams
2
Pass mark
82%

How our practice content is created

Practice questions are independently developed using the official Cisco 300-715 SISE exam guide and Cisco documentation. Each question is checked for alignment with the current exam objectives and reviewed for technical accuracy before publication.

The 300-715 SISE bank cites 2 distinct Cisco documentation pages, and every question links the source it was written against — so you can check any answer at first hand.

Official 300-715 SISE exam guide

Cisco is a trademark of its respective owner. This is an independent study resource and is not affiliated with, endorsed by, or authorised by Cisco.

Related certifications

Credentials that pair well with this exam or come next on the path.

Official resources

Provider documentation and study material for this exam.

Previous exam versions

Old or retired versions of this certification exam.

Exam nameCodeRetired
Implementing and Configuring Cisco Identity Services Engine v1.0300-7152023
Implementing Cisco Secure Access Solutions300-208 SISASFebruary 2020
Start Free Practice →

5 flashcard sets · 5 learning tests · 2 timed exams · 200-question bank