SY0-401 Exam Details

  • Exam Code
    :SY0-401
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1789 Q&As
  • Last Updated
    :Dec 14, 2021

CompTIA SY0-401 Online Questions & Answers

  • Question 1461:

    A technician has deployed a new VPN concentrator. The device needs to authenticate users based on a backend directory service. Which of the following services could be run on the VPN concentrator to perform this authentication?

    A. Kerberos
    B. RADIUS
    C. GRE
    D. IPSec

  • Question 1462:

    A retail store uses a wireless network for its employees to access inventory from anywhere in the store. Due to concerns regarding the aging wireless network, the store manager has brought in a consultant to harden the network. During the site survey, the consultant discovers that the network was using WEP encryption. Which of the following would be the BEST course of action for the consultant to recommend?

    A. Replace the unidirectional antenna at the front of the store with an omni-directional antenna.
    B. Change the encryption used so that the encryption protocol is CCMP-based.
    C. Disable the network's SSID and configure the router to only access store devices based on MAC addresses.
    D. Increase the access point's encryption from WEP to WPA TKIP.

  • Question 1463:

    Ann, a sales manager, successfully connected her company-issued smartphone to the wireless network in her office without supplying a username/password combination. Upon disconnecting from the wireless network, she attempted to connect her personal tablet computer to the same wireless network and could not connect.

    Which of the following is MOST likely the reason?

    A. The company wireless is using a MAC filter.
    B. The company wireless has SSID broadcast disabled.
    C. The company wireless is using WEP.
    D. The company wireless is using WPA2.

  • Question 1464:

    A company hires outside security experts to evaluate the security status of the corporate network. All of the company's IT resources are outdated and prone to crashing. The company requests that all testing be performed in a way which minimizes the risk of system failures. Which of the following types of testing does the company want performed?

    A. Penetration testing
    B. WAF testing
    C. Vulnerability scanning
    D. White box testing

  • Question 1465:

    A security analyst informs the Chief Executive Officer (CEO) that a security breach has just occurred. This results in the Risk Manager and Chief Information Officer (CIO) being caught unaware when the CEO asks for further information. Which of the following strategies should be implemented to ensure the Risk Manager and CIO are not caught unaware in the future?

    A. Procedure and policy management
    B. Chain of custody management
    C. Change management
    D. Incident management

  • Question 1466:

    Which of the following attacks initiates a connection by sending specially crafted packets in which multiple TCP flags are set to 1?

    A. Replay
    B. Smurf
    C. Xmas
    D. Fraggle

  • Question 1467:

    A security analyst is reviewing firewall logs while investigating a compromised web server.

    The following ports appear in the log:

    22, 25, 445, 1433, 3128, 3389, 6667

    Which of the following protocols was used to access the server remotely?

    A. LDAP
    B. HTTP
    C. RDP
    D. HTTPS

  • Question 1468:

    Which of the following is a vulnerability associated with disabling pop-up blockers?

    A. An alert message from the administrator may not be visible
    B. A form submitted by the user may not open
    C. The help window may not be displayed
    D. Another browser instance may execute malicious code

  • Question 1469:

    While responding to an incident on a new Windows server, the administrator needs to disable unused services. Which of the following commands can be used to see processes that are listening on a TCP port?

    A. IPCONFIG
    B. Netstat
    C. PSINFO
    D. Net session

  • Question 1470:

    Which of the following solutions provides the most flexibility when testing new security controls prior to implementation?

    A. Trusted OS
    B. Host software baselining
    C. OS hardening
    D. Virtualization

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-401 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.