RC0-501 Exam Details

  • Exam Code
    :RC0-501
  • Exam Name
    :CompTIA Security+ Recertification Exam
  • Certification
    :CompTIA Security+
  • Vendor
    :CompTIA
  • Total Questions
    :349 Q&As
  • Last Updated
    :May 24, 2026

CompTIA RC0-501 Online Questions & Answers

  • Question 111:

    A security engineer is configuring a wireless network that must support mutual authentication of the wireless client and the authentication server before users provide credentials. The wireless network must also support authentication with usernames and passwords. Which of the following authentication protocols MUST the security engineer select?

    A. EAP-FAST
    B. EAP-TLS
    C. PEAP
    D. EAP

  • Question 112:

    Which of the following vulnerability types would the type of hacker known as a script kiddie be MOST dangerous against?

    A. Passwords written on the bottom of a keyboard
    B. Unpatched exploitable Internet-facing services
    C. Unencrypted backup tapes
    D. Misplaced hardware token

  • Question 113:

    An analyst is reviewing a simple program for potential security vulnerabilities before being deployed to a Windows server. Given the following code:

    Which of the following vulnerabilities is present?

    A. Bad memory pointer
    B. Buffer overflow
    C. Integer overflow
    D. Backdoor

  • Question 114:

    A security administrator is developing controls for creating audit trails and tracking if a PHI data breach is to occur. The administrator has been given the following requirements:

    All access must be correlated to a user account.

    All user accounts must be assigned to a single individual.

    User access to the PHI data must be recorded.

    Anomalies in PHI data access must be reported.

    Logs and records cannot be deleted or modified.

    Which of the following should the administrator implement to meet the above requirements? (Select three.)

    A. Eliminate shared accounts.
    B. Create a standard naming convention for accounts.
    C. Implement usage auditing and review.
    D. Enable account lockout thresholds.
    E. Copy logs in real time to a secured WORM drive.
    F. Implement time-of-day restrictions.
    G. Perform regular permission audits and reviews.

  • Question 115:

    Drag and drop the correct protocol to its default port.

    Select and Place:

  • Question 116:

    Joe notices there are several user accounts on the local network generating spam with embedded malicious code. Which of the following technical control should Joe put in place to BEST reduce these incidents?

    A. Account lockout
    B. Group Based Privileges
    C. Least privilege
    D. Password complexity

  • Question 117:

    An incident responder receives a call from a user who reports a computer is exhibiting symptoms consistent with a malware infection. Which of the following steps should the responder perform NEXT?

    A. Capture and document necessary information to assist in the response.
    B. Request the user capture and provide a screenshot or recording of the symptoms.
    C. Use a remote desktop client to collect and analyze the malware in real time.
    D. Ask the user to back up files for later recovery.

  • Question 118:

    A vulnerability scanner that uses its running service's access level to better assess vulnerabilities across multiple assets within an organization is performing a:

    A. Credentialed scan.
    B. Non-intrusive scan.
    C. Privilege escalation test.
    D. Passive scan.

  • Question 119:

    Anne, the Chief Executive Officer (CEO), has reported that she is getting multiple telephone calls from someone claiming to be from the helpdesk. The caller is asking to verify her network authentication credentials because her computer is broadcasting across the network. This is MOST likely which of the following types of attacks?

    A. Vishing
    B. Impersonation
    C. Spim
    D. Scareware

  • Question 120:

    Ann. An employee in the payroll department, has contacted the help desk citing multiple issues with her device, including:

    Slow performance Word documents, PDFs, and images no longer opening A pop-up

    Ann states the issues began after she opened an invoice that a vendor emailed to her. Upon opening the invoice, she had to click several security warnings to view it in her word processor. With which of the following is the device MOST likely infected?

    A. Spyware
    B. Crypto-malware
    C. Rootkit
    D. Backdoor

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your RC0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.