SY0-401 Exam Details

  • Exam Code
    :SY0-401
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1789 Q&As
  • Last Updated
    :Dec 14, 2021

CompTIA SY0-401 Online Questions & Answers

  • Question 1531:

    Which of the following is a security advantage of using NoSQL vs. SQL databases in a three-tier environment?

    A. NoSQL databases are not vulnerable to XSRF attacks from the application server.
    B. NoSQL databases are not vulnerable to SQL injection attacks.
    C. NoSQL databases encrypt sensitive information by default.
    D. NoSQL databases perform faster than SQL databases on the same hardware.

  • Question 1532:

    Sara, a hacker, is completing a website form to request a free coupon. The site has a field that limits the request to 3 or fewer coupons. While submitting the form, Sara runs an application on her machine to intercept the HTTP POST command and change the field from 3 coupons to 30.

    Which of the following was used to perform this attack?

    A. SQL injection
    B. XML injection
    C. Packet sniffer
    D. Proxy

  • Question 1533:

    After reviewing the firewall logs of her organization's wireless APs, Ann discovers an unusually high amount of failed authentication attempts in a particular segment of the building. She remembers that a new business moved into the office space across the street. Which of the following would be the BEST option to begin addressing the issue?

    A. Reduce the power level of the AP on the network segment
    B. Implement MAC filtering on the AP of the affected segment
    C. Perform a site survey to see what has changed on the segment
    D. Change the WPA2 encryption key of the AP in the affected segment

  • Question 1534:

    A security administrator suspects that an employee in the IT department is utilizing a reverse proxy to bypass the company's content filter and browse unapproved and non-work related sites while at work. Which of the following tools could BEST be used to determine how the employee is connecting to the reverse proxy?

    A. Port scanner
    B. Vulnerability scanner
    C. Honeypot
    D. Protocol analyzer

  • Question 1535:

    An attacker wearing a building maintenance uniform approached a company's receptionist asking for access to a secure area. The receptionist asks for identification, a building access badge and checks the company's list approved maintenance personnel prior to granting physical access to the secure are. The controls used by the receptionist are in place to prevent which of the following types of attacks?

    A. Tailgating
    B. Shoulder surfing
    C. Impersonation
    D. Hoax

  • Question 1536:

    A switch is set up to allow only 2 simultaneous MAC addresses per switch port. An administrator is reviewing a log and determines that a switch ort has been deactivated in a conference room after it detected 3 or more MAC addresses on the same port. Which of the following reasons could have caused this port to be disabled?

    A. A pc had a NIC replaced and reconnected to the switch
    B. An ip telephone has been plugged in
    C. A rouge access point was plugged in
    D. An arp attack was launched from a pc on this port

  • Question 1537:

    After a merger between two companies a security analyst has been asked to ensure that the organization's systems are secured against infiltration by any former employees that were terminated during the transition. Which of the following actions are MOST appropriate to harden applications against infiltration by former employees? (Select TWO)

    A. Monitor VPN client access
    B. Reduce failed login out settings
    C. Develop and implement updated access control policies
    D. Review and address invalid login attempts
    E. Increase password complexity requirements
    F. Assess and eliminate inactive accounts

  • Question 1538:

    Which of the following would enhance the security of accessing data stored in the cloud? (Select TWO)

    A. Block level encryption
    B. SAML authentication
    C. Transport encryption
    D. Multifactor authentication
    E. Predefined challenge questions
    F. Hashing

  • Question 1539:

    An organization is required to log all user internet activity. Which of the following would accomplish this requirement?

    A. Configure an access list on the default gateway router. Configure the default gateway router to log all web traffic to a syslog server
    B. Configure a firewall on the internal network. On the client IP address configuration, use the IP address of the firewall as the default gateway, configure the firewall to log all traffic to a syslog server
    C. Configure a proxy server on the internal network and configure the proxy server to log all web traffic to a syslog server
    D. Configure an access list on the core switch, configure the core switch to log all web traffic to a syslog server

  • Question 1540:

    Which of the following risk concepts requires an organization to determine the number of failures per year?

    A. SLE
    B. ALE
    C. MTBF
    D. Quantitative analysis

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-401 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.