SY0-401 Exam Details

  • Exam Code
    :SY0-401
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1789 Q&As
  • Last Updated
    :Dec 14, 2021

CompTIA SY0-401 Online Questions & Answers

  • Question 691:

    Which of the following is the difference between identification and authentication of a user?

    A. Identification tells who the user is and authentication tells whether the user is allowed to logon to a system.
    B. Identification tells who the user is and authentication proves it.
    C. Identification proves who the user is and authentication is used to keep the users data secure.
    D. Identification proves who the user is and authentication tells the user what they are allowed to do.

  • Question 692:

    Which of the following controls can be used to prevent the disclosure of sensitive information stored on a mobile device's removable media in the event that the device is lost or stolen?

    A. Hashing
    B. Screen locks
    C. Device password
    D. Encryption

  • Question 693:

    A system administrator wants to confidentially send a user name and password list to an individual outside the company without the information being detected by security controls. Which of the following would BEST meet this security goal?

    A. Digital signatures
    B. Hashing
    C. Full-disk encryption
    D. Steganography

  • Question 694:

    A network consists of various remote sites that connect back to two main locations. Pete, the security administrator, needs to block TELNET access into the network. Which of the following, by default, would be the BEST choice to accomplish this goal?

    A. Block port 23 on the L2 switch at each remote site
    B. Block port 23 on the network firewall
    C. Block port 25 on the L2 switch at each remote site
    D. Block port 25 on the network firewall

  • Question 695:

    A major medical corporation is investigating deploying a web based portal for patients to access their medical records. The medical corporation has a long history of maintaining IT security but is considering having a third party vendor create the web portal. Which of the following areas is MOST important for the Chief Information Security Officer to focus on when reviewing proposal from vendors interested in creating the web portal?

    A. Contractor background check
    B. Confidentiality and availability
    C. Redundancy and privacy
    D. Integrity and confidentiality

  • Question 696:

    When employing PKI to send signed and encrypted data the individual sending the data must have: (Select TWO)

    A. The receiver's private key
    B. The root certificate
    C. The sender's private key
    D. The sender's public key
    E. The receiver's public key

  • Question 697:

    Ann, the system administrator, is installing an extremely critical system that can support ZERO downtime. Which of the following BEST describes the type of system Ann is installing?

    A. High availability
    B. Clustered
    C. RAID
    D. Load balanced

  • Question 698:

    A company exchanges information with a business partner. An annual audit of the business partner is conducted against the SLA in order to verify:

    A. Performance and service delivery metrics
    B. Backups are being performed and tested
    C. Data ownership is being maintained and audited
    D. Risk awareness is being adhered to and enforced

  • Question 699:

    An organization has hired a penetration tester to test the security of its ten web servers. The penetration tester is able to gain root/administrative access in several servers by exploiting vulnerabilities associated with the implementation of SMTP, POP, DNS, FTP, Telnet, and IMAP. Which of the following recommendations should the penetration tester provide to the organization to better protect their web servers in the future?

    A. Use a honeypot
    B. Disable unnecessary services
    C. Implement transport layer security
    D. Increase application event logging

  • Question 700:

    Which of the following can be implemented with multiple bit strength?

    A. AES
    B. DES
    C. SHA-1
    D. MD5
    E. MD4

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-401 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.