SY0-301 Exam Details

  • Exam Code
    :SY0-301
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :820 Q&As
  • Last Updated
    :Dec 12, 2021

CompTIA SY0-301 Online Questions & Answers

  • Question 91:

    Which of the following BEST allows Pete, a security administrator, to determine the type, source, and flags of the packet traversing a network for troubleshooting purposes?

    A. Switches
    B. Protocol analyzers
    C. Routers
    D. Web security gateways

  • Question 92:

    Sara, an application developer, implemented error and exception handling alongside input validation. Which of the following does this help prevent?

    A. Buffer overflow
    B. Pop-up blockers
    C. Cross-site scripting
    D. Fuzzing

  • Question 93:

    A security administrator wants to check user password complexity. Which of the following is the BEST tool to use?

    A. Password history
    B. Password logging
    C. Password cracker
    D. Password hashing

  • Question 94:

    Matt, the Chief Information Security Officer (CISO), tells the network administrator that a security company has been hired to perform a penetration test against his network. The security company asks Matt which type of testing would be most beneficial for him. Which of the following BEST describes what the security company might do during a black box test?

    A. The security company is provided with all network ranges, security devices in place, and logical maps of the network.
    B. The security company is provided with no information about the corporate network or physical locations.
    C. The security company is provided with limited information on the network, including all network diagrams.
    D. The security company is provided with limited information on the network, including some subnet ranges and logical network diagrams.

  • Question 95:

    Which of the following would Pete, a security administrator, MOST likely implement in order to allow employees to have secure remote access to certain internal network services such as file servers?

    A. Packet filtering firewall
    B. VPN gateway
    C. Switch
    D. Router

  • Question 96:

    Which of the following can BEST help prevent cross-site scripting attacks and buffer overflows on a production system?

    A. Input validation
    B. Network intrusion detection system
    C. Anomaly-based HIDS
    D. Peer review

  • Question 97:

    Matt, a systems security engineer, is determining which credential-type authentication to use within a planned 802.1x deployment. He is looking for a method that does not require a client certificate, has a server side certificate, and uses TLS tunnels for encryption. Which credential- type authentication method BEST fits these requirements?

    A. EAP-TLS
    B. EAP-FAST
    C. PEAP-CHAP
    D. PEAP-MSCHAPv2

  • Question 98:

    Which of the following would a security administrator implement in order to identify a problem between two applications that are not communicating properly?

    A. Protocol analyzer
    B. Baseline report
    C. Risk assessment
    D. Vulnerability scan

  • Question 99:

    Joe, the Chief Technical Officer (CTO), is concerned about new malware being introduced into the corporate network. He has tasked the security engineers to implement a technology that is capable of alerting the team when unusual traffic is on the network. Which of the following types of technologies will BEST address this scenario?

    A. Application Firewall
    B. Anomaly Based IDS
    C. Proxy Firewall
    D. Signature IDS

  • Question 100:

    Which of the following uses port 22 by default? (Select THREE).

    A. SSH
    B. SSL
    C. TLS
    D. SFTP
    E. SCP
    F. FTPS
    G. SMTP
    H. SNMP

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-301 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.