SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 1191:

    The availability of a system has been labeled as the highest priority. Which of the following should be focused on the MOST to ensure the objective?

    A. Authentication
    B. HVAC
    C. Full-disk encryption
    D. File integrity checking

  • Question 1192:

    An administrator is implementing a secure web server and wants to ensure that if the web server application is compromised, the application does not have access to other parts of the server or network. Which of the following should the administrator implement? (Choose two.)

    A. Mandatory access control
    B. Discretionary access control
    C. Rule-based access control
    D. Role-based access control
    E. Attribute-based access control

  • Question 1193:

    Which of the following is an asymmetric function that generates a new and separate key every time it runs?

    A. RSA
    B. DSA
    C. DHE
    D. HMAC
    E. PBKDF2

  • Question 1194:

    A security consultant discovers that an organization is using the PCL protocol to print documents, utilizing the default driver and print settings. Which of the following is the MOST likely risk in this situation?

    A. An attacker can access and change the printer configuration.
    B. SNMP data leaving the printer will not be properly encrypted.
    C. An MITM attack can reveal sensitive information.
    D. An attacker can easily inject malicious code into the printer firmware.
    E. Attackers can use the PCL protocol to bypass the firewall of client computers.

  • Question 1195:

    An incident response analyst at a large corporation is reviewing proxy data log. The analyst believes a malware infection may have occurred. Upon further review, the analyst determines the computer responsible for the suspicious network traffic is used by the Chief Executive Officer (CEO). Which of the following is the best NEXT step for the analyst to take?

    A. Call the CEO directly to ensure awareness of the event
    B. Run a malware scan on the CEO's workstation
    C. Reimage the CEO's workstation
    D. Disconnect the CEO's workstation from the network

  • Question 1196:

    The Chief Information Officer (CIO) has heard concerns from the business and the help desk about frequent user account lockouts Which of the following account management practices should be modified to ease the burden?

    A. Password complexity
    B. Account disablement
    C. False-rejection rate
    D. Time-of-day restrictions

  • Question 1197:

    A portable data storage device has been determined to have malicious firmware. Which of the following is the BEST course of action to ensure data confidentiality?

    A. Format the device
    B. Re-image the device
    C. Perform virus scan in the device
    D. Physically destroy the device

  • Question 1198:

    A network administrator at a small office wants to simplify the configuration of mobile clients connecting to an encrypted wireless network.

    Which of the following should be implemented in the administrator does not want to provide the wireless password or he certificate to the employees?

    A. WPS
    B. 802.1x
    C. WPA2-PSK
    D. TKIP

  • Question 1199:

    Company policy requires the use if passphrases instead if passwords. Which of the following technical controls MUST be in place in order to promote the use of passphrases?

    A. Reuse
    B. Length
    C. History
    D. Complexity

  • Question 1200:

    During a third-party audit, it is determined that a member of the firewall team can request, approve, and implement a new rule-set on the firewall. Which of the following will the audit team most l likely recommend during the audit out brief?

    A. Discretionary access control for the firewall team
    B. Separation of duties policy for the firewall team
    C. Least privilege for the firewall team
    D. Mandatory access control for the firewall team

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.