SY0-401 Exam Details

  • Exam Code
    :SY0-401
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1789 Q&As
  • Last Updated
    :Dec 14, 2021

CompTIA SY0-401 Online Questions & Answers

  • Question 1111:

    A security administrator has been tasked with improving the overall security posture related to desktop machines on the network. An auditor has recently that several machines with confidential customer information displayed in the screens are left unattended during the course of the day. Which of the following could the security administrator implement to reduce the risk associated with the finding?

    A. Implement a clean desk policy
    B. Security training to prevent shoulder surfing
    C. Enable group policy based screensaver timeouts
    D. Install privacy screens on monitors

  • Question 1112:

    Using a heuristic system to detect an anomaly in a computer's baseline, a system administrator was able to detect an attack even though the company signature based IDS and antivirus did not detect it. Further analysis revealed that the attacker had downloaded an executable file onto the company PC from the USB port, and executed it to trigger a privilege escalation flaw.

    Which of the following attacks has MOST likely occurred?

    A. Cookie stealing
    B. Zero-day
    C. Directory traversal
    D. XML injection

  • Question 1113:

    Recently the desktop support group has been performing a hardware refresh and has replaced numerous computers. An auditor discovered that a number of the new computers did not have the company's antivirus software installed on them, Which of the following could be utilized to notify the network support group when computers without the antivirus software are added to the network?

    A. Network port protection
    B. NAC
    C. NIDS
    D. Mac Filtering

  • Question 1114:

    While securing a network it is decided to allow active FTP connections into the network. Which of the following ports MUST be configured to allow active FTP connections? (Select TWO).

    A. 20
    B. 21
    C. 22
    D. 68
    E. 69

  • Question 1115:

    Users require access to a certain server depending on their job function. Which of the following would be the MOST appropriate strategy for securing the server?

    A. Common access card
    B. Role based access control
    C. Discretionary access control
    D. Mandatory access control

  • Question 1116:

    Which of the following technologies can store multi-tenant data with different security requirements?

    A. Data loss prevention
    B. Trusted platform module
    C. Hard drive encryption
    D. Cloud computing

  • Question 1117:

    A security administrator implements access controls based on the security classification of the data and need-to-know information. Which of the following BEST describes this level of access control?

    A. Implicit deny
    B. Role-based Access Control
    C. Mandatory Access Controls
    D. Least privilege

  • Question 1118:

    A security manager installed a standalone fingerprint reader at the data center. All employees that need to access the data center have been enrolled to the reader and local reader database is always kept updates. When an employee who has been enrolled uses the fingerprint reader the door to the data center opens. Which of the following does this demonstrate? (Select THREE)

    A. Two-factor authentication
    B. Single sign-on
    C. Something you have
    D. Identification
    E. Authentication
    F. Authorization

  • Question 1119:

    Mandatory vacations are a security control which can be used to uncover which of the following?

    A. Fraud committed by a system administrator
    B. Poor password security among users
    C. The need for additional security staff
    D. Software vulnerabilities in vendor code

  • Question 1120:

    A security technician wants to improve the strength of a weak key by making it more secure against brute force attacks. Which of the following would achieve this?

    A. Blowfish
    B. Key stretching
    C. Key escrow
    D. Recovery agent

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-401 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.