SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 191:

    Which of the following models is considered an iterative approach with frequent testing?

    A. Agile
    B. Waterfall
    C. DevOps
    D. Sandboxing

  • Question 192:

    HOTSPOT

    Select the appropriate attack and remediation from each drop-down list to label the corresponding attack with its remediation.

    INSTRUCTIONS

    Not all attacks and remediation actions will be used. If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.

    Select and Place:

  • Question 193:

    Which of the following penetration testing concepts is being used when an attacker uses public Internet databases to enumerate and learn more about a target?

    A. Reconnaissance
    B. Initial exploitation
    C. Pivoting
    D. Vulnerability scanning
    E. White box testing

  • Question 194:

    Which of the following would a security specialist be able to determine upon examination of a server's certificate?

    A. CA public key
    B. Server private key
    C. CSR
    D. OID

  • Question 195:

    Systems administrator and key support staff come together to simulate a hypothetical interruption of service. The team updates the disaster recovery processes and documentation after meeting. Which of the following describes the team's efforts?

    A. Business impact analysis
    B. Continuity of operation
    C. Tabletop exercise
    D. Order of restoration

  • Question 196:

    A staff member contacts the help desk because the staff member's device is currently experiencing the following symptoms:

    1.

    Long delays when launching applications

    2.

    Timeout errors when loading some websites Errors when attempting to open local Word documents and photo files Pop-up messages in the task bar stating that antivirus is out-of-date VPN connection that keeps timing out, causing the device to lose connectivity

    Which of the following BEST describes the root cause of these symptoms?

    A. The user has disabled the antivirus software on the device, and the hostchecker for the VPN is preventing access.
    B. The device is infected with crypto-malware, and the files on the device are being encrypted.
    C. The proxy server for accessing websites has a rootkit installed, and this is causing connectivity issues.
    D. A patch has been incorrectly applied to the device and is causing issues with the wireless adapter on the device.

  • Question 197:

    Which of the following cryptographic attacks would salting of passwords render ineffective?

    A. Brute force
    B. Dictionary
    C. Rainbow tables
    D. Birthday

  • Question 198:

    The SOC is reviewing processes and procedures after a recent incident. The review indicates it took more than 30 minutes to determine that quarantining an infected host was the best course of action. This allowed the malware to spread to additional hosts before it was contained. Which of the following would be BEST to improve the incident response process?

    A. Updating the playbooks with better decision points
    B. Dividing the network into trusted and untrusted zones
    C. Providing additional end-user training on acceptable use
    D. Implementing manual quarantining of infected hosts

  • Question 199:

    Which of the following controls is implemented in lieu of the primary security controls?

    A. Compensating
    B. Corrective
    C. Detective
    D. Deterrent

  • Question 200:

    Upon learning about a user who has reused the same password for the past several years, a security specialist reviews the logs. The following is an extraction of the report after the most recent password change requirement:

    Which of the following security controls is the user's behavior targeting?

    A. Password expiration B. Password history
    C. Password complexity
    D. Password reuse

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.