SY0-301 Exam Details

  • Exam Code
    :SY0-301
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :820 Q&As
  • Last Updated
    :Dec 12, 2021

CompTIA SY0-301 Online Questions & Answers

  • Question 341:

    A certificate used on an ecommerce web server is about to expire. Which of the following will occur if the certificate is allowed to expire?

    A. The certificate will be added to the Certificate Revocation List (CRL).
    B. Clients will be notified that the certificate is invalid.
    C. The ecommerce site will not function until the certificate is renewed.
    D. The ecommerce site will no longer use encryption.

  • Question 342:

    Which of the following protocols provides transport security for virtual terminal emulation?

    A. TLS
    B. SSH
    C. SCP
    D. S/MIME

  • Question 343:

    Privilege creep among long-term employees can be mitigated by which of the following procedures?

    A. User permission reviews
    B. Mandatory vacations
    C. Separation of duties
    D. Job function rotation

  • Question 344:

    A security administrator has implemented a policy to prevent data loss. Which of the following is the BEST method of enforcement?

    A. Internet networks can be accessed via personally-owned computers.
    B. Data can only be stored on local workstations.
    C. Wi-Fi networks should use WEP encryption by default.
    D. Only USB devices supporting encryption are to be used.

  • Question 345:

    Which of the following fire suppression systems is MOST likely used in a datacenter?

    A. FM-200
    B. Dry-pipe
    C. Wet-pipe
    D. Vacuum

  • Question 346:

    Jane, a security administrator, has been tasked with explaining authentication services to the company's management team. The company runs an active directory infrastructure. Which of the following solutions BEST relates to the host authentication protocol within the company's environment?

    A. Kerberos
    B. Least privilege
    C. TACACS+
    D. LDAP

  • Question 347:

    An SSL/TLS private key is installed on a corporate web proxy in order to inspect HTTPS requests. Which of the following describes how this private key should be stored so that it is protected from theft?

    A. Implement full disk encryption
    B. Store on encrypted removable media
    C. Utilize a hardware security module
    D. Store on web proxy file system

  • Question 348:

    Sara, a user, downloads a keygen to install pirated software. After running the keygen, system performance is extremely slow and numerous antivirus alerts are displayed. Which of the following BEST describes this type of malware?

    A. Logic bomb
    B. Worm
    C. Trojan
    D. Adware

  • Question 349:

    A financial company requires a new private network link with a business partner to cater for real- time and batched data flows. Which of the following activities should be performed by the IT security staff member prior to establishing the link?

    A. Baseline reporting
    B. Design review
    C. Code review
    D. SLA reporting

  • Question 350:

    The manager has a need to secure physical documents every night, since the company began enforcing the clean desk policy. The BEST solution would includE. (Select TWO).

    A. Fire- or water-proof safe.
    B. Department door locks.
    C. Proximity card.
    D. 24-hour security guard.
    E. Locking cabinets and drawers.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-301 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.