SY0-301 Exam Details

  • Exam Code
    :SY0-301
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :820 Q&As
  • Last Updated
    :Dec 12, 2021

CompTIA SY0-301 Online Questions & Answers

  • Question 141:

    A forensic analyst is reviewing electronic evidence after a robbery. Security cameras installed at the site were facing the wrong direction to capture the incident. The analyst ensures the cameras are turned to face the proper direction. Which of the following types of controls is being used?

    A. Detective
    B. Deterrent
    C. Corrective
    D. Preventive

  • Question 142:

    Which of the following protocols is the security administrator observing in this packet capture?

    12:33:43, SRC 192.168.4.3:3389, DST 10.67.33.20:8080, SYN/ACK

    A. HTTPS
    B. RDP
    C. HTTP
    D. SFTP

  • Question 143:

    Which of the following protocols allows for secure transfer of files? (Select TWO).

    A. ICMP
    B. SNMP
    C. SFTP
    D. SCP
    E. TFTP

  • Question 144:

    Matt, a security administrator, wants to configure all the switches and routers in the network in order to securely monitor their status. Which of the following protocols would he need to configure on each device?

    A. SMTP
    B. SNMPv3
    C. IPSec
    D. SNMP

  • Question 145:

    A security administrator is tasked with calculating the total ALE on servers. In a two year period of time, a company has to replace five servers. Each server replacement has cost the company $4,000 with downtime costing $3,000. Which of the following is the ALE for the company?

    A. $7,000
    B. $10,000
    C. $17,500
    D. $35,000

  • Question 146:

    Which of the following protocols provides fast, unreliable file transfer?

    A. TFTP
    B. SFTP
    C. Telnet
    D. FTPS

  • Question 147:

    The security administrator at ABC company received the following log information from an external party:

    10:45:01 EST, SRC 10.4.3.7:3056, DST 8.4.2.1:80, ALERT, Directory traversal

    10:45:02 EST, SRC 10.4.3.7:3057, DST 8.4.2.1:80, ALERT, Account brute force

    10:45:03

    EST, SRC 10.4.3.7:3058, DST 8.4.2.1:80, ALERT, Port scan

    The external party is reporting attacks coming from abc-company.com. Which of the following is the reason the ABC company's security administrator is unable to determine the origin of the attack?

    A. A NIDS was used in place of a NIPS.
    B. The log is not in UTC.
    C. The external party uses a firewall.
    D. ABC company uses PAT.

  • Question 148:

    Several employee accounts appear to have been cracked by an attacker. Which of the following should the security administrator implement to mitigate password cracking attacks? (Select TWO).

    A. Increase password complexity
    B. Deploy an IDS to capture suspicious logins
    C. Implement password history
    D. Implement monitoring of logins
    E. Implement password expiration
    F. Increase password length

  • Question 149:

    Which of the following application security testing techniques is implemented when an automated system generates random input data?

    A. Fuzzing
    B. XSRF
    C. Hardening
    D. Input validation

  • Question 150:

    A corporation is looking to expand their data center but has run out of physical space in which to store hardware. Which of the following would offer the ability to expand while keeping their current data center operated by internal staff?

    A. Virtualization
    B. Subnetting
    C. IaaS
    D. SaaS

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-301 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.