SY0-301 Exam Details

  • Exam Code
    :SY0-301
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :820 Q&As
  • Last Updated
    :Dec 12, 2021

CompTIA SY0-301 Online Questions & Answers

  • Question 351:

    A security specialist has been asked to evaluate a corporate network by performing a vulnerability assessment. Which of the following will MOST likely be performed?

    A. Identify vulnerabilities, check applicability of vulnerabilities by passively testing security controls.
    B. Verify vulnerabilities exist, bypass security controls and exploit the vulnerabilities.
    C. Exploit security controls to determine vulnerabilities and mis-configurations.
    D. Bypass security controls and identify applicability of vulnerabilities by passively testing security controls.

  • Question 352:

    Which of the following concepts is enforced by certifying that email communications have been sent by who the message says it has been sent by?

    A. Key escrow
    B. Non-repudiation
    C. Multifactor authentication
    D. Hashing

  • Question 353:

    A security administrator has been tasked with setting up a new internal wireless network that must use end to end TLS. Which of the following may be used to meet this objective?

    A. WPA
    B. HTTPS
    C. WEP
    D. WPA 2

  • Question 354:

    An administrator is concerned that a company's web server has not been patched. Which of the following would be the BEST assessment for the administrator to perform?

    A. Vulnerability scan
    B. Risk assessment
    C. Virus scan
    D. Network sniffer

  • Question 355:

    A company provides secure wireless Internet access for visitors and vendors working onsite. Some of the vendors using older technology report that they are unable to access the wireless network after entering the correct network information. Which of the following is the MOST likely reason for this issue?

    A. The SSID broadcast is disabled.
    B. The company is using the wrong antenna type.
    C. The MAC filtering is disabled on the access point.
    D. The company is not using strong enough encryption.

  • Question 356:

    The act of magnetically erasing all of the data on a disk is known as:

    A. Wiping
    B. Dissolution
    C. Scrubbing
    D. Degaussing

  • Question 357:

    Which of the following is a Data Loss Prevention (DLP) strategy and is MOST useful for securing data in use?

    A. Email scanning
    B. Content discovery
    C. Database fingerprinting
    D. Endpoint protection

  • Question 358:

    The Chief Information Security Officer (CISO) has mandated that all IT systems with credit card data be segregated from the main corporate network to prevent unauthorized access and that access to the IT systems should be logged. Which of the following would BEST meet the CISO's requirements?

    A. Sniffers
    B. NIDS
    C. Firewalls
    D. Web proxies
    E. Layer 2 switches

  • Question 359:

    A user has received an email from an external source which asks for details on the company's new product line set for release in one month. The user has a detailed spec sheet but it is marked "Internal Proprietary Information". Which of the following should the user do NEXT?

    A. Contact their manager and request guidance on how to best move forward
    B. Contact the help desk and/or incident response team to determine next steps
    C. Provide the requestor with the email information since it will be released soon anyway
    D. Reply back to the requestor to gain their contact information and call them

  • Question 360:

    Which of the following security awareness training is BEST suited for data owners who are concerned with protecting the confidentiality of their data?

    A. Social networking use training
    B. Personally owned device policy training
    C. Tailgating awareness policy training
    D. Information classification training

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-301 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.