SY0-401 Exam Details

  • Exam Code
    :SY0-401
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1789 Q&As
  • Last Updated
    :Dec 14, 2021

CompTIA SY0-401 Online Questions & Answers

  • Question 391:

    Key elements of a business impact analysis should include which of the following tasks?

    A. Develop recovery strategies, prioritize recovery, create test plans, post-test evaluation, and update processes.
    B. Identify institutional and regulatory reporting requirements, develop response teams and communication trees, and develop press release templates.
    C. Employ regular preventive measures such as patch management, change management, antivirus and vulnerability scans, and reports to management.
    D. Identify critical assets systems and functions, identify dependencies, determine critical downtime limit, define scenarios by type and scope of impact, and quantify loss potential.

  • Question 392:

    The security officer is preparing a read-only USB stick with a document of important personal phone numbers, vendor contacts, an MD5 program, and other tools to provide to employees. At which of the following points in an incident should the officer instruct employees to use this information?

    A. Business Impact Analysis
    B. First Responder
    C. Damage and Loss Control
    D. Contingency Planning

  • Question 393:

    Two organizations want to share sensitive data with one another from their IT systems to support a mutual customer base. Both organizations currently have secure network and security policies and procedures. Which of the following should be the PRIMARY security considerations by the security managers at each organization prior to sharing information? (Select THREE)

    A. Physical security controls
    B. Device encryption
    C. Outboarding/Offboarding
    D. Use of digital signatures
    E. SLA/ISA
    F. Data ownership
    G. Use of smartcards or common access cards
    H. Patch management

  • Question 394:

    Which of the following is used to certify intermediate authorities in a large PKI deployment?

    A. Root CA
    B. Recovery agent
    C. Root user
    D. Key escrow

  • Question 395:

    Joe, the Chief Technical Officer (CTO), is concerned about new malware being introduced into the corporate network. He has tasked the security engineers to implement a technology that is capable of alerting the team when unusual traffic is on the network. Which of the following types of technologies will BEST address this scenario?

    A. Application Firewall
    B. Anomaly Based IDS
    C. Proxy Firewall
    D. Signature IDS

  • Question 396:

    Review the following diagram depicting communication between PC1 and PC2 on each side of a router. Analyze the network traffic logs which show communication between the two computers as captured by the computer with IP 10.2.2.10. DIAGRAM PC1 PC2 [192.168.1.30]--------[INSIDE 192.168.1.1 router OUTSIDE 10.2.2.1]---------[10.2.2.10] LOGS 10:30:22, SRC 10.2.2.1:3030, DST 10.2.2.10:80, SYN 10:30:23, SRC 10.2.2.10:80, DST 10.2.2.1:3030, SYN/ACK 10:30:24, SRC 10.2.2.1:3030, DST 10.2.2.10:80, ACK Given the above information, which of the following can be inferred about the above environment?

    A. 192.168.1.30 is a web server.
    B. The web server listens on a non-standard port.
    C. The router filters port 80 traffic.
    D. The router implements NAT.

  • Question 397:

    A company has a BYOD policy that includes tablets and smart phones. In the case of a legal investigation, which of the following poses the greatest security issues?

    A. Recovering sensitive documents from a device if the owner is unable or unwilling to cooperate
    B. Making a copy of all of the files on the device and hashing them after the owner has provided the PIN
    C. Using GPS services to locate the device owner suspected in the investigation
    D. Wiping the device from a remote location should it be identified as a risk in the investigation

  • Question 398:

    Which of the following are unique to white box testing methodologies? (Select two)

    A. Application program interface API testing
    B. Bluesnarfing
    C. External network penetration testing
    D. Function, statement and code coverage
    E. Input fuzzing

  • Question 399:

    After a recent security breach, the network administrator has been tasked to update and backup all router and switch configurations. The security administrator has been tasked to enforce stricter security policies. All users were forced to undergo additional user awareness training. All of these actions are due to which of the following types of risk mitigation strategies?

    A. Change management
    B. Implementing policies to prevent data loss
    C. User rights and permissions review
    D. Lessons learned

  • Question 400:

    Speaking a passphrase into a voice print analyzer is an example of which of the following security concepts?

    A. Two factor authentication
    B. Identification and authorization
    C. Single sign-on
    D. Single factor authentication

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-401 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.