SY0-401 Exam Details

  • Exam Code
    :SY0-401
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1789 Q&As
  • Last Updated
    :Dec 14, 2021

CompTIA SY0-401 Online Questions & Answers

  • Question 801:

    An administrator would like to review the effectiveness of existing security in the enterprise. Which of the following would be the BEST place to start?

    A. Review past security incidents and their resolution
    B. Rewrite the existing security policy
    C. Implement an intrusion prevention system
    D. Install honey pot systems

  • Question 802:

    Which of the following protocols is vulnerable to man-in-the-middle attacks by NOT using end to end TLS encryption?

    A. HTTPS
    B. WEP
    C. WPA
    D. WPA 2

  • Question 803:

    A single server hosts a sensitive SQL-based database and a web service containing static content. A few of the database fields need to encrypted due to regulatory requirements. Which of the following would provide the BEST encryption solution for this particular server?

    A. Individual file
    B. Database
    C. Full-disk
    D. Record based

  • Question 804:

    Pete, the compliance manager, wants to meet regulations. Pete would like certain ports blocked only on all computers that do credit card transactions. Which of the following should Pete implement to BEST achieve this goal?

    A. A host-based intrusion prevention system
    B. A host-based firewall
    C. Antivirus update system
    D. A network-based intrusion detection system

  • Question 805:

    A security administrator has been assigned to review the security posture of the standard corporate system image for virtual machines. The security administrator conducts a thorough review of the system logs, installation procedures, and network configuration of the VM image. Upon reviewing the access logs and user accounts, the security administrator determines that several accounts will not be used in production. Which of the following would correct the deficiencies?

    A. Mandatory access controls
    B. Disable remote login
    C. Host hardening
    D. Disabling services

  • Question 806:

    Which of the following would be used when a higher level of security is desired for encryption key storage?

    A. TACACS+
    B. L2TP
    C. LDAP
    D. TPM

  • Question 807:

    Pete, the system administrator, is reviewing his disaster recovery plans. He wishes to limit the downtime in the event of a disaster, but does not have the budget approval to implement or maintain an offsite location that ensures 99.99% availability. Which of the following would be Pete's BEST option?

    A. Use hardware already at an offsite location and configure it to be quickly utilized.
    B. Move the servers and data to another part of the company's main campus from the server room.
    C. Retain data back-ups on the main campus and establish redundant servers in a virtual environment.
    D. Move the data back-ups to the offsite location, but retain the hardware on the main campus for redundancy.

  • Question 808:

    Which of the following allows a network administrator to implement an access control policy based on individual user characteristics and NOT on job function?

    A. Attributes based
    B. Implicit deny
    C. Role based
    D. Rule based

  • Question 809:

    A new security policy in an organization requires that all file transfers within the organization be completed using applications that provide secure transfer. Currently, the organization uses FTP and HTTP to transfer files. Which of the following should the organization implement in order to be compliant with the new policy?

    A. Replace FTP with SFTP and replace HTTP with TLS
    B. Replace FTP with FTPS and replaces HTTP with TFTP
    C. Replace FTP with SFTP and replace HTTP with Telnet
    D. Replace FTP with FTPS and replaces HTTP with IPSec

  • Question 810:

    Which of the following BEST describes malware that tracks a user's web browsing habits and injects the attacker's advertisements into unrelated web pages? (Select TWO)

    A. Logic bomb
    B. Backdoor
    C. Ransomware
    D. Adware
    E. Botnet
    F. Spyware

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-401 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.