JK0-022 Exam Details

  • Exam Code
    :JK0-022
  • Exam Name
    :CompTIA Security+ Certification
  • Certification
    :CompTIA Security+
  • Vendor
    :CompTIA
  • Total Questions
    :1149 Q&As
  • Last Updated
    :Feb 05, 2025

CompTIA JK0-022 Online Questions & Answers

  • Question 811:

    Which of the following BEST describes using a smart card and typing in a PIN to gain access to a system?

    A. Biometrics
    B. PKI
    C. Single factor authentication
    D. Multifactor authentication

  • Question 812:

    Which of the following could a security administrator implement to mitigate the risk of tailgating for a large organization?

    A. Train employees on correct data disposal techniques and enforce policies.
    B. Only allow employees to enter or leave through one door at specified times of the day.
    C. Only allow employees to go on break one at a time and post security guards 24/7 at each entrance.
    D. Train employees on risks associated with social engineering attacks and enforce policies.

  • Question 813:

    An email client says a digital signature is invalid and the sender cannot be verified. The recipient is concerned with which of the following concepts?

    A. Integrity
    B. Availability
    C. Confidentiality
    D. Remediation

  • Question 814:

    The network administrator is responsible for promoting code to applications on a DMZ web server. Which of the following processes is being followed to ensure application integrity?

    A. Application hardening
    B. Application firewall review
    C. Application change management
    D. Application patch management

  • Question 815:

    Which of the following can be utilized in order to provide temporary IT support during a disaster, where the organization sets aside funds for contingencies, but does not necessarily have a dedicated site to restore those services?

    A. Hot site
    B. Warm site
    C. Cold site
    D. Mobile site

  • Question 816:

    A company is concerned that a compromised certificate may result in a man-in-the-middle attack against backend financial servers. In order to minimize the amount of time a compromised certificate would be accepted by other servers, the

    company decides to add another validation step to SSL/TLS connections.

    Which of the following technologies provides the FASTEST revocation capability?

    A. Online Certificate Status Protocol (OCSP)
    B. Public Key Cryptography (PKI)
    C. Certificate Revocation Lists (CRL)
    D. Intermediate Certificate Authority (CA)

  • Question 817:

    A security administrator must implement a secure key exchange protocol that will allow company clients to autonomously exchange symmetric encryption keys over an unencrypted channel. Which of the following MUST be implemented?

    A. SHA-256
    B. AES
    C. Diffie-Hellman
    D. 3DES

  • Question 818:

    During a penetration test from the Internet, Jane, the system administrator, was able to establish a connection to an internal router, but not successfully log in to it. Which ports and protocols are MOST likely to be open on the firewall? (Select FOUR).

    A. 21
    B. 22
    C. 23
    D. 69
    E. 3389
    F. SSH
    G. Terminal services
    H. Rlogin
    I. Rsync
    J. Telnet

  • Question 819:

    A trojan was recently discovered on a server. There are now concerns that there has been a security breach that allows unauthorized people to access data. The administrator should be looking for the presence of a/an:

    A. Logic bomb.
    B. Backdoor.
    C. Adware application.
    D. Rootkit.

  • Question 820:

    Which of the following BEST describes the weakness in WEP encryption?

    A. The initialization vector of WEP uses a crack-able RC4 encryption algorithm. Once enough packets are captured an XOR operation can be performed and the asymmetric keys can be derived.
    B. The WEP key is stored in plain text and split in portions across 224 packets of random data. Once enough packets are sniffed the IV portion of the packets can be removed leaving the plain text key.
    C. The WEP key has a weak MD4 hashing algorithm used. A simple rainbow table can be used to generate key possibilities due to MD4 collisions.
    D. The WEP key is stored with a very small pool of random numbers to make the cipher text. As the random numbers are often reused it becomes easy to derive the remaining WEP key.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your JK0-022 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.