SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 201:

    A systems administrator is installing a new server in a large datacenter. Which of the following BEST describes the importance of properly positioning servers in the rack to maintain availability?

    A. To allow for visibility of the servers' status indicators
    B. To adhere to cable management standards
    C. To maximize the fire suppression system's efficiency
    D. To provide consistent air flow

  • Question 202:

    An instructor is teaching a hands-on wireless security class and needs to configure a test access point to show students an attack on a weak protocol. Which of the following configurations should the instructor implement?

    A. WPA2
    B. WPA
    C. EAP
    D. WEP

  • Question 203:

    A company wants to host a publicly available server that performs the following functions:

    Evaluates MX record lookup

    Can perform authenticated requests for A and AAA records Uses RRSIG

    Which of the following should the company use to fulfill the above requirements?

    A. DNSSEC
    B. SFTP
    C. nslookup
    D. dig
    E. LDAPS

  • Question 204:

    A security administrator is investigating a report that a user is receiving suspicious emails. The user's machine has an old functioning modem installed. Which of the following security concerns need to be identified and mitigated? (Choose two.)

    A. Vishing
    B. Whaling
    C. Spear phishing
    D. Pharming
    E. War dialing
    F. Hoaxing

  • Question 205:

    A security administrator in a bank is required to enforce an access control policy so no single individual is allowed to both initiate and approve financial transactions. Which of the following BEST represents the impact the administrator is deterring?

    A. Principle of least privilege
    B. External intruder
    C. Conflict of Interest
    D. Fraud

  • Question 206:

    A user has attempted to access data at a higher classification level than the user's account is currently authorized to access. Which of the following access control models has been applied to this user's account?

    A. MAC
    B. DAC
    C. RBAC
    D. ABAC

  • Question 207:

    Ann, a user, reports she is receiving emails that appear to be from organizations to which she belongs, but the emails contain links to websites that do not belong to those organizations. Which of the following security scenarios does this describe?

    A. A hacker is using Ann's social media information to create a spear phishing attack
    B. The DNS servers for the organizations have been hacked and are pointing to malicious sites
    C. The company's mail system has changed the organization's links to point to a proxy server for security
    D. Ann's computer is infected with adware that has changed the email links

  • Question 208:

    Which of the following types of penetration test will allow the tester to have access only to password hashes prior to the penetration test?

    A. Black box
    B. Gray box
    C. Credentialed
    D. White box

  • Question 209:

    A systems administrator found a suspicious file in the root of the file system. The file contains URLs, usernames, passwords, and text from other documents being edited on the system. Which of the following types of malware would generate such a file?

    A. Keylogger
    B. Rootkit
    C. Bot
    D. RAT

  • Question 210:

    A security administrator has written a script that will automatically upload binary and text-based configuration files onto a remote server using a scheduled task. The configuration files contain sensitive information. Which of the following should the administrator use? (Select TWO)

    A. TOPT
    B. SCP
    C. FTP over a non-standard pot
    D. SRTP
    E. Certificate-based authentication
    F. SNMPv3

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.