SY0-401 Exam Details

  • Exam Code
    :SY0-401
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1789 Q&As
  • Last Updated
    :Dec 14, 2021

CompTIA SY0-401 Online Questions & Answers

  • Question 911:

    A security technician is working with the network firewall team to implement access controls at the company's demarc as part of the initiation of configuration management processes. One of the network technicians asks the security technician to explain the access control type found in a firewall. With which of the following should the security technician respond?

    A. Rule based access control
    B. Role based access control
    C. Discretionary access control
    D. Mandatory access control

  • Question 912:

    While configuring a new access layer switch, the administrator, Joe, was advised that he needed to make sure that only devices authorized to access the network would be permitted to login and utilize resources. Which of the following should the administrator implement to ensure this happens?

    A. Log Analysis
    B. VLAN Management
    C. Network separation
    D. 802.1x

  • Question 913:

    Which of the following file systems is from Microsoft and was included with their earliest operating systems?

    A. NTFS
    B. UFS
    C. MTFS
    D. FAT

  • Question 914:

    A security administrator is aware that a portion of the company's Internet-facing network tends to be non-secure due to poorly configured and patched systems. The business owner has accepted the risk of those systems being compromised, but the administrator wants to determine the degree to which those systems can be used to gain access to the company intranet. Which of the following should the administrator perform?

    A. Patch management assessment
    B. Business impact assessment
    C. Penetration test
    D. Vulnerability assessment

  • Question 915:

    When designing a web based client server application with single application server and database cluster backend, input validation should be performed:

    A. On the client
    B. Using database stored procedures
    C. On the application server
    D. Using HTTPS

  • Question 916:

    A security administrator has concerns that employees are installing unapproved applications on their company provide smartphones. Which of the following would BEST mitigate this?

    A. Implement remote wiping user acceptance policies
    B. Disable removable storage capabilities
    C. Implement an application whitelist
    D. Disable the built-in web browsers

  • Question 917:

    During a security assessment, an administrator wishes to see which services are running on a remote server. Which of the following should the administrator use?

    A. Port scanner
    B. Network sniffer
    C. Protocol analyzer
    D. Process list

  • Question 918:

    An attacker Joe configures his service identifier to be as an access point advertised on a billboard. Joe then conducts a denial of service attack against the legitimate AP causing users to drop their connections and then reconnect to Joe's system with the same SSID. Which of the following BEST describes this of attack?

    A. Bluejacking
    B. WPS attack
    C. Evil twin
    D. War driving
    E. Replay attack

  • Question 919:

    A security analyst noticed a colleague typing the following command:

    `Telnet some-host 443'

    Which of the following was the colleague performing?

    A. A hacking attempt to the some-host web server with the purpose of achieving a distributed denial of service attack.
    B. A quick test to see if there is a service running on some-host TCP/443, which is being routed correctly and not blocked by a firewall.
    C. Trying to establish an insecure remote management session. The colleague should be using SSH or terminal services instead.
    D. A mistaken port being entered because telnet servers typically do not listen on port 443.

  • Question 920:

    After working on his doctoral dissertation for two years, Joe, a user, is unable to open his dissertation file. The screen shows a warning that the dissertation file is corrupted because it is infected with a backdoor, and can only be recovered by upgrading the antivirus software from the free version to the commercial version. Which of the following types of malware is the laptop MOST likely infected with?

    A. Ransomware
    B. Trojan
    C. Backdoor
    D. Armored virus

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-401 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.