SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 1341:

    A security administrator is configuring a RADIUS server for wireless authentication. The configuration must ensure client credentials are encrypted end-to-end between the client and the authenticator. Which of the following protocols should be configured on the RADIUS server? (Choose two.)

    A. PAP
    B. MSCHAP
    C. PEAP
    D. NTLM
    E. SAML

  • Question 1342:

    A Security analyst has received an alert about PII being sent via email. The analyst's Chief Information Security Officer (CISO) has made it clear that PII must be handled with extreme care. From which of the following did the alert MOST likely originate?

    A. S/MIME
    B. DLP
    C. IMAP
    D. HIDS

  • Question 1343:

    Which of the following are methods to implement HA in a web application server environment? (Select two.)

    A. Load balancers
    B. Application layer firewalls
    C. Reverse proxies
    D. VPN concentrators
    E. Routers

  • Question 1344:

    A computer emergency response team is called at midnight to investigate a case in which a mail server was restarted. After an initial investigation, it was discovered that email is being exfiltrated through an active connection. Which of the following is the NEXT step the team should take?

    A. Identify the source of the active connection
    B. Perform eradication of active connection and recover
    C. Performance containment procedure by disconnecting the server
    D. Format the server and restore its initial configuration

  • Question 1345:

    A user received an SMS on a mobile phone that asked for bank details. Which of the following social- engineering techniques was used in this case?

    A. SPIM
    B. Vishing
    C. Spear phishing
    D. Smishing

  • Question 1346:

    A security engineer needs to obtain a recurring log of changes to system files. The engineer is most concerned with detecting unauthorized changes to system data Which of the following tools can be used to fulfill the requirements that were established by the engineer?

    A. TPM
    B. Trusted operating system
    C. File integrity monitor
    D. UEFI
    E. FDE

  • Question 1347:

    The Chief Executive Officer (CEO) received an email from the Chief Financial Officer (CFO), asking the CEO to send financial details. The CEO thought it was strange that the CFO would ask for the financial details via email. The email address was correct in the "From" section of the email. The CEO clicked the form and sent the financial information as requested. Which of the following caused the incident?

    A. Domain hijacking
    B. SPF not enabled
    C. MX records rerouted
    D. Malicious insider

  • Question 1348:

    A new firewall has been places into service at an organization. However, a configuration has not been entered on the firewall. Employees on the network segment covered by the new firewall report they are unable to access the network. Which of the following steps should be completed to BEST resolve the issue?

    A. The firewall should be configured to prevent user traffic form matching the implicit deny rule.
    B. The firewall should be configured with access lists to allow inbound and outbound traffic.
    C. The firewall should be configured with port security to allow traffic.
    D. The firewall should be configured to include an explicit deny rule.

  • Question 1349:

    Which of the following is the BEST use of a WAF?

    A. To protect sites on web servers that are publicly accessible
    B. To allow access to web services of internal users of the organization
    C. To maintain connection status of all HTTP requests
    D. To deny access to all websites with certain contents

  • Question 1350:

    Which of the following control types would a backup of server data provide in case of a system issue?

    A. Corrective
    B. Deterrent
    C. Preventive
    D. Detective

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.