SY0-301 Exam Details

  • Exam Code
    :SY0-301
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :820 Q&As
  • Last Updated
    :Dec 12, 2021

CompTIA SY0-301 Online Questions & Answers

  • Question 161:

    The security administrator has been tasked to update all the access points to provide a more secure connection. All access points currently use WPA TKIP for encryption. Which of the following would be configured to provide more secure connections?

    A. WEP
    B. WPA2 CCMP
    C. Disable SSID broadcast and increase power levels
    D. MAC filtering

  • Question 162:

    An administrator is looking to implement a security device which will be able to not only detect network intrusions at the organization level, but help defend against them as well. Which of the following is being described here?

    A. NIDS
    B. NIPS
    C. HIPS
    D. HIDS

  • Question 163:

    A security administrator has been tasked to ensure access to all network equipment is controlled by a central server such as TACACS+. This type of implementation supports which of the following risk mitigation strategies?

    A. User rights and permissions review
    B. Change management
    C. Data loss prevention
    D. Implement procedures to prevent data theft

  • Question 164:

    A victim is logged onto a popular home router forum site in order to troubleshoot some router configuration issues. The router is a fairly standard configuration and has an IP address of 192.168.1.1. The victim is logged into their router administrative interface in one tab and clicks a forum link in another tab. Due to clicking the forum link, the home router reboots. Which of the following attacks MOST likely occurred?

    A. Brute force password attack
    B. Cross-site request forgery
    C. Cross-site scripting
    D. Fuzzing

  • Question 165:

    Users at a company report that a popular news website keeps taking them to a web page with derogatory content. This is an example of which of the following?

    A. Evil twin
    B. DNS poisoning
    C. Vishing
    D. Session hijacking

  • Question 166:

    The Human Resources department has a parent shared folder setup on the server. There are two groups that have access, one called managers and one called staff. There are many sub folders under the parent shared folder, one is called payroll. The parent folder access control list propagates all subfolders and all subfolders inherit the parent permission. Which of the following is the quickest way to prevent the staff group from gaining access to the payroll folder?

    A. Remove the staff group from the payroll folder
    B. Implicit deny on the payroll folder for the staff group
    C. Implicit deny on the payroll folder for the managers group
    D. Remove inheritance from the payroll folder

  • Question 167:

    Methods to test the responses of software and web applications to unusual or unexpected inputs is known as:

    A. Brute force.
    B. HTML encoding.
    C. Web crawling.
    D. Fuzzing.

  • Question 168:

    The main corporate website has a service level agreement that requires availability 100% of the time, even in the case of a disaster. Which of the following would be required to meet this demand?

    A. Warm site implementation for the datacenter
    B. Geographically disparate site redundant datacenter
    C. Localized clustering of the datacenter
    D. Cold site implementation for the datacenter

  • Question 169:

    A supervisor in the human resources department has been given additional job duties in the accounting department. Part of their new duties will be to check the daily balance sheet calculations on spreadsheets that are restricted to the accounting group. In which of the following ways should the account be handled?

    A. The supervisor should be allowed to have access to the spreadsheet files, and their membership in the human resources group should be terminated.
    B. The supervisor should be removed from the human resources group and added to the accounting group.
    C. The supervisor should be added to the accounting group while maintaining their membership in the human resources group.
    D. The supervisor should only maintain membership in the human resources group.

  • Question 170:

    A company recently experienced data loss when a server crashed due to a midday power outage. Which of the following should be used to prevent this from occurring again?

    A. Recovery procedures
    B. EMI shielding
    C. Environmental monitoring
    D. Redundancy

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-301 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.