SY0-301 Exam Details

  • Exam Code
    :SY0-301
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :820 Q&As
  • Last Updated
    :Dec 12, 2021

CompTIA SY0-301 Online Questions & Answers

  • Question 601:

    Which of the following is an authentication service that uses UDP as a transport medium?

    A. TACACS+
    B. LDAP
    C. Kerberos
    D. RADIUS

  • Question 602:

    Which of the following can be used to mitigate risk if a mobile device is lost?

    A. Cable lock
    B. Transport encryption
    C. Voice encryption
    D. Strong passwords

  • Question 603:

    The security officer is preparing a read-only USB stick with a document of important personal phone numbers, vendor contacts, an MD5 program, and other tools to provide to employees. At which of the following points in an incident should the officer instruct employees to use this information?

    A. Business Impact Analysis
    B. First Responder
    C. Damage and Loss Control
    D. Contingency Planning

  • Question 604:

    An auditor's report discovered several accounts with no activity for over 60 days. The accounts were later identified as contractors' accounts who would be returning in three months and would need to resume the activities. Which of the following would mitigate and secure the auditors finding?

    A. Disable unnecessary contractor accounts and inform the auditor of the update.
    B. Reset contractor accounts and inform the auditor of the update.
    C. Inform the auditor that the accounts belong to the contractors.
    D. Delete contractor accounts and inform the auditor of the update.

  • Question 605:

    A security administrator is reviewing the below output from a password auditing tool:

    P@ss. @pW1. S3cU4

    Which of the following additional policies should be implemented based on the tool's output?

    A. Password age
    B. Password history
    C. Password length
    D. Password complexity

  • Question 606:

    An attacker attempted to compromise a web form by inserting the following input into the username fielD.

    admin)(|(password=*))

    Which of the following types of attacks was attempted?

    A. SQL injection
    B. Cross-site scripting
    C. Command injection
    D. LDAP injection

  • Question 607:

    The annual loss expectancy can be calculated by:

    A. Dividing the annualized rate of return by single loss expectancy.
    B. Multiplying the annualized rate of return and the single loss expectancy.
    C. Subtracting the single loss expectancy from the annualized rate of return.
    D. Adding the single loss expectancy and the annualized rate of return.

  • Question 608:

    Matt, a security analyst, needs to select an asymmetric encryption method that allows for the same level of encryption strength with a lower key length than is typically necessary. Which of the following encryption methods offers this capability?

    A. Twofish
    B. Diffie-Hellman
    C. ECC
    D. RSA

  • Question 609:

    Which of the following is a security benefit of providing additional HVAC capacity or increased tonnage in a datacenter?

    A. Increased availability of network services due to higher throughput
    B. Longer MTBF of hardware due to lower operating temperatures
    C. Higher data integrity due to more efficient SSD cooling
    D. Longer UPS run time due to increased airflow

  • Question 610:

    Which of the following should be implemented to stop an attacker from mapping out addresses and/or devices on a network?

    A. Single sign on
    B. IPv6
    C. Secure zone transfers
    D. VoIP

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-301 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.