SY0-301 Exam Details

  • Exam Code
    :SY0-301
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :820 Q&As
  • Last Updated
    :Dec 12, 2021

CompTIA SY0-301 Online Questions & Answers

  • Question 181:

    Which of the following is BEST carried out immediately after a security breach is discovered?

    A. Risk transference
    B. Access control revalidation
    C. Change management
    D. Incident management

  • Question 182:

    After a number of highly publicized and embarrassing customer data leaks as a result of social engineering attacks by phone, the Chief Information Officer (CIO) has decided user training will reduce the risk of another data leak. Which of the following would be MOST effective in reducing data leaks in this situation?

    A. Information Security Awareness
    B. Social Media and BYOD
    C. Data Handling and Disposal
    D. Acceptable Use of IT Systems

  • Question 183:

    An IT director is looking to reduce the footprint of their company's server environment. They have decided to move several internally developed software applications to an alternate environment, supported by an external company. Which of the following BEST describes this arrangement?

    A. Infrastructure as a Service
    B. Storage as a Service
    C. Platform as a Service
    D. Software as a Service

  • Question 184:

    Which of the following describes how an attacker can send unwanted advertisements to a mobile device?

    A. Man-in-the-middle
    B. Bluejacking
    C. Bluesnarfing
    D. Packet sniffing

  • Question 185:

    Ann has taken over as the new head of the IT department. One of her first assignments was to implement AAA in preparation for the company's new telecommuting policy. When she takes inventory of the organizations existing network infrastructure, she makes note that it is a mix of several different vendors. Ann knows she needs a method of secure centralized access to the company's network resources. Which of the following is the BEST service for Ann to implement?

    A. RADIUS
    B. LDAP
    C. SAML
    D. TACACS+

  • Question 186:

    Which of the following BEST describes a demilitarized zone?

    A. A buffer zone between protected and unprotected networks.
    B. A network where all servers exist and are monitored.
    C. A sterile, isolated network segment with access lists.
    D. A private network that is protected by a firewall and a VLAN.

  • Question 187:

    Public keys are used for which of the following?

    A. Decrypting wireless messages
    B. Decrypting the hash of an electronic signature
    C. Bulk encryption of IP based email traffic
    D. Encrypting web browser traffic

  • Question 188:

    A malicious program modified entries in the LMHOSTS file of an infected system. Which of the following protocols would have been affected by this?

    A. ICMP
    B. BGP
    C. NetBIOS
    D. DNS

  • Question 189:

    An IT staff member was entering the datacenter when another person tried to piggyback into the datacenter as the door was opened. While the IT staff member attempted to question the other individual by politely asking to see their badge, the individual refused and ran off into the datacenter. Which of the following should the IT staff member do NEXT?

    A. Call the police while tracking the individual on the closed circuit television system
    B. Contact the forensics team for further analysis
    C. Chase the individual to determine where they are going and what they are doing
    D. Contact the onsite physical security team with a description of the individual

  • Question 190:

    A recent intrusion has resulted in the need to perform incident response procedures. The incident response team has identified audit logs throughout the network and organizational systems which hold details of the security breach. Prior to this incident, a security consultant informed the company that they needed to implement an NTP server on the network. Which of the following is a problem that the incident response team will likely encounter during their assessment?

    A. Chain of custody
    B. Tracking man hours
    C. Record time offset
    D. Capture video traffic

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-301 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.