SY0-301 Exam Details

  • Exam Code
    :SY0-301
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :820 Q&As
  • Last Updated
    :Dec 12, 2021

CompTIA SY0-301 Online Questions & Answers

  • Question 311:

    A security administrator wants to ensure that the message the administrator sends out to their Chief Financial Officer (CFO) does not get changed in route. Which of the following is the administrator MOST concerned with?

    A. Data confidentiality
    B. High availability
    C. Data integrity
    D. Business continuity

  • Question 312:

    During a routine audit a web server is flagged for allowing the use of weak ciphers. Which of the following should be disabled to mitigate this risk? (Select TWO).

    A. SSL 1.0
    B. RC4
    C. SSL 3.0
    D. AES
    E. DES
    F. TLS 1.0

  • Question 313:

    Which of the following is an example of a false negative?

    A. The IDS does not identify a buffer overflow.
    B. Anti-virus identifies a benign application as malware.
    C. Anti-virus protection interferes with the normal operation of an application.
    D. A user account is locked out after the user mistypes the password too many times.

  • Question 314:

    Elastic cloud computing environments often reuse the same physical hardware for multiple customers over time as virtual machines are instantiated and deleted. This has important implications for which of the following data security concerns?

    A. Hardware integrity
    B. Data confidentiality
    C. Availability of servers
    D. Integrity of data

  • Question 315:

    After viewing wireless traffic, an attacker notices the following networks are being broadcasted by local access points:

    Corpnet

    Coffeeshop

    FreePublicWifi

    Using this information the attacker spoofs a response to make nearby laptops connect back to a malicious device.

    Which of the following has the attacker created?

    A. Infrastructure as a Service
    B. Load balancer
    C. Evil twin
    D. Virtualized network

  • Question 316:

    The security department has implemented a new laptop encryption product in the environment. The product requires one user name and password at the time of boot up and also another password after the operating system has finished loading. This setup is using which of the following authentication types?

    A. Two-factor authentication
    B. Single sign-on
    C. Multifactor authentication
    D. Single factor authentication

  • Question 317:

    Which of the following should be considered to mitigate data theft when using CAT5 wiring?

    A. CCTV
    B. Environmental monitoring
    C. Multimode fiber
    D. EMI shielding

  • Question 318:

    A security administrator wishes to increase the security of the wireless network. Which of the following BEST addresses this concern?

    A. Change the encryption from TKIP-based to CCMP-based.
    B. Set all nearby access points to operate on the same channel.
    C. Configure the access point to use WEP instead of WPA2.
    D. Enable all access points to broadcast their SSIDs.

  • Question 319:

    ABC company has a lot of contractors working for them. The provisioning team does not always get notified that a contractor has left the company. Which of the following policies would prevent contractors from having access to systems in the event a contractor has left?

    A. Annual account review
    B. Account expiration policy
    C. Account lockout policy
    D. Account disablement

  • Question 320:

    Which of the following concepts allows an organization to group large numbers of servers together in order to deliver a common service?

    A. Clustering
    B. RAID
    C. Backup Redundancy
    D. Cold site

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-301 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.