SY0-401 Exam Details

  • Exam Code
    :SY0-401
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1789 Q&As
  • Last Updated
    :Dec 14, 2021

CompTIA SY0-401 Online Questions & Answers

  • Question 651:

    Which of the following would BEST be used to calculate the expected loss of an event, if the likelihood of an event occurring is known? (Select TWO).

    A. DAC
    B. ALE
    C. SLE
    D. ARO
    E. ROI

  • Question 652:

    To mitigate the risk of intrusion, an IT Manager is concerned with using secure versions of protocols and services whenever possible. In addition, the security technician is required to monitor the types of traffic being generated. Which of the following tools is the technician MOST likely to use?

    A. Port scanner
    B. Network analyzer
    C. IPS
    D. Audit Logs

  • Question 653:

    Which of the following ports is used for SSH, by default?

    A. 23
    B. 32
    C. 12
    D. 22

  • Question 654:

    Which of the following technical controls helps to prevent Smartphones from connecting to a corporate network?

    A. Application white listing
    B. Remote wiping
    C. Acceptable use policy
    D. Mobile device management

  • Question 655:

    A company is deploying a new VoIP phone system. They require 99.999% uptime for their phone service and are concerned about their existing data network interfering with the VoIP phone system. The core switches in the existing data network are almost fully saturated. Which of the following options will pro-vide the best performance and availability for both the VoIP traffic, as well as the traffic on the existing data network?

    A. Put the VoIP network into a different VLAN than the existing data network.
    B. Upgrade the edge switches from 10/100/1000 to improve network speed
    C. Physically separate the VoIP phones from the data network
    D. Implement flood guards on the data network

  • Question 656:

    Using a protocol analyzer, a security consultant was able to capture employee's credentials. Which of the following should the consultant recommend to the company, in order to mitigate the risk of employees credentials being captured in the same manner in the future?

    A. Wiping of remnant data
    B. Hashing and encryption of data in-use
    C. Encryption of data in-transit
    D. Hashing of data at-rest

  • Question 657:

    A security specialist has been asked to evaluate a corporate network by performing a vulnerability assessment. Which of the following will MOST likely be performed?

    A. Identify vulnerabilities, check applicability of vulnerabilities by passively testing security controls.
    B. Verify vulnerabilities exist, bypass security controls and exploit the vulnerabilities.
    C. Exploit security controls to determine vulnerabilities and misconfigurations.
    D. Bypass security controls and identify applicability of vulnerabilities by passively testing security controls.

  • Question 658:

    The security administrator receives a service ticket saying a host based firewall is interfering with the operation of a new application that is being tested in delevopment. The administrator asks for clarification on which ports need to be open. The software vendor replies that it could use up to 20 ports and many customers have disabled the host based firewall. After examining the system the administrator sees several ports that are open for database and application servers that only used locally. The vendor continues to recommend disabling the host based firewall. Which of the following is the best course of action for the administrator to take?

    A. Allow ports used by the application through the network firewall
    B. Allow ports used externally through the host firewall
    C. Follow the vendor recommendations and disable the host firewall
    D. Allow ports used locally through the host firewall

  • Question 659:

    A merchant acquirer has the need to store credit card numbers in a transactional database in a high performance environment. Which of the following BEST protects the credit card data?

    A. Database field encryption
    B. File-level encryption
    C. Data loss prevention system
    D. Full disk encryption

  • Question 660:

    When considering a vendor-specific vulnerability in critical industrial control systems which of the following techniques supports availability?

    A. Deploying identical application firewalls at the border
    B. Incorporating diversity into redundant design
    C. Enforcing application white lists on the support workstations
    D. Ensuring the systems' anti-virus definitions are up-to-date

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-401 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.