JK0-022 Exam Details

  • Exam Code
    :JK0-022
  • Exam Name
    :CompTIA Security+ Certification
  • Certification
    :CompTIA Security+
  • Vendor
    :CompTIA
  • Total Questions
    :1149 Q&As
  • Last Updated
    :Feb 05, 2025

CompTIA JK0-022 Online Questions & Answers

  • Question 351:

    Which of the following hardware based encryption devices is used as a part of multi-factor authentication to access a secured computing system?

    A. Database encryption
    B. USB encryption
    C. Whole disk encryption
    D. TPM

  • Question 352:

    A security administrator wants to implement a solution which will allow some applications to run under the user's home directory and only have access to files stored within the same user's folder, while other applications have access to shared folders. Which of the following BEST addresses these requirements if the environment is concurrently shared by multiple users?

    A. OS Virtualization
    B. Trusted OS
    C. Process sandboxing
    D. File permission

  • Question 353:

    Which of the following would the security engineer set as the subnet mask for the servers below to utilize host addresses on separate broadcast domains?

    Server 1: 192.168.100.6 Server 2: 192.168.100.9 Server 3: 192.169.100.20

    A. /24
    B. /27
    C. /28
    D. /29
    E. /30

  • Question 354:

    Several users' computers are no longer responding normally and sending out spam email to the users' entire contact list. This is an example of which of the following?

    A. Trojan virus
    B. Botnet
    C. Worm outbreak
    D. Logic bomb

  • Question 355:

    Which of the following is the MOST specific plan for various problems that can arise within a system?

    A. Business Continuity Plan
    B. Continuity of Operation Plan
    C. Disaster Recovery Plan
    D. IT Contingency Plan

  • Question 356:

    Which of the following can only be mitigated through the use of technical controls rather that user security training?

    A. Shoulder surfing
    B. Zero-day
    C. Vishing
    D. Trojans

  • Question 357:

    Using a heuristic system to detect an anomaly in a computer's baseline, a system administrator was able to detect an attack even though the company signature based IDS and antivirus did not detect it. Further analysis revealed that the attacker had downloaded an executable file onto the company PC from the USB port, and executed it to trigger a privilege escalation flaw.

    Which of the following attacks has MOST likely occurred?

    A. Cookie stealing
    B. Zero-day
    C. Directory traversal
    D. XML injection

  • Question 358:

    A user casually browsing the Internet is redirected to a warez site where a number of pop-ups appear. After clicking on a pop-up to complete a survey, a drive-by download occurs. Which of the following is MOST likely to be contained in the download?

    A. Backdoor
    B. Spyware
    C. Logic bomb
    D. DDoS
    E. Smurf

  • Question 359:

    Sara, the Chief Security Officer (CSO), has had four security breaches during the past two years. Each breach has cost the company $3,000. A third party vendor has offered to repair the security hole in the system for $25,000. The breached system is scheduled to be replaced in five years.

    Which of the following should Sara do to address the risk?

    A. Accept the risk saving $10,000.
    B. Ignore the risk saving $5,000.
    C. Mitigate the risk saving $10,000.
    D. Transfer the risk saving $5,000.

  • Question 360:

    Matt, a security analyst, needs to implement encryption for company data and also prevent theft of company data. Where and how should Matt meet this requirement?

    A. Matt should implement access control lists and turn on EFS.
    B. Matt should implement DLP and encrypt the company database.
    C. Matt should install Truecrypt and encrypt the company server.
    D. Matt should install TPMs and encrypt the company database.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your JK0-022 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.