SY0-301 Exam Details

  • Exam Code
    :SY0-301
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :820 Q&As
  • Last Updated
    :Dec 12, 2021

CompTIA SY0-301 Online Questions & Answers

  • Question 301:

    LDAP and Kerberos are commonly used for which of the following?

    A. To perform queries on a directory service
    B. To store usernames and passwords for Federated Identity
    C. To sign SSL wildcard certificates for subdomains
    D. To utilize single sign-on capabilities

  • Question 302:

    A team of firewall administrators have access to a `master password list' containing service account passwords. Which of the following BEST protects the master password list?

    A. File encryption
    B. Password hashing
    C. USB encryption
    D. Full disk encryption

  • Question 303:

    After an audit, it was discovered that the security group memberships were not properly adjusted for employees' accounts when they moved from one role to another. Which of the following has the organization failed to properly implement? (Select TWO).

    A. Mandatory access control enforcement.
    B. User rights and permission reviews.
    C. Technical controls over account management.
    D. Account termination procedures.
    E. Management controls over account management.
    F. Incident management and response plan.

  • Question 304:

    A security team has identified that the wireless signal is broadcasting into the parking lot. To reduce the risk of an attack against the wireless network from the parking lot, which of the following controls should be used? (Select TWO).

    A. Antenna placement
    B. Interference
    C. Use WEP
    D. Single Sign on
    E. Disable the SSID
    F. Power levels

  • Question 305:

    Which of the following provides the strongest authentication security on a wireless network?

    A. MAC filter
    B. WPA2
    C. WEP
    D. Disable SSID broadcast

  • Question 306:

    An IT auditor tests an application as an authenticated user. This is an example of which of the following types of testing?

    A. Penetration
    B. White box
    C. Black box
    D. Gray box

  • Question 307:

    Which of the following protocols is vulnerable to man-in-the-middle attacks by NOT using end to end TLS encryption?

    A. HTTPS
    B. WEP
    C. WPA
    D. WPA 2

  • Question 308:

    Joe, the security administrator, has determined that one of his web servers is under attack. Which of the following can help determine where the attack originated from?

    A. Capture system image
    B. Record time offset
    C. Screenshots
    D. Network sniffing

  • Question 309:

    Which of the following functions provides an output which cannot be reversed and converts data into a string of characters?

    A. Hashing
    B. Stream ciphers
    C. Steganography
    D. Block ciphers

  • Question 310:

    In which of the following categories would creating a corporate privacy policy, drafting acceptable use policies, and group based access control be classified?

    A. Security control frameworks
    B. Best practice
    C. Access control methodologies
    D. Compliance activity

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-301 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.