SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 21:

    A company determines that it is prohibitively expensive to become compliant with new credit card regulations. Instead, the company decides to purchase insurance to cover the cost of any potential loss. Which of the following is the company doing?

    A. Transferring the risk
    B. Accepting the risk
    C. Avoiding the risk
    D. Migrating the risk

  • Question 22:

    A network engineer has been asked to investigate why several wireless barcode scanners and wireless computers in a warehouse have intermittent connectivity to the shipping server. The barcode scanners and computers are all on forklift trucks and move around the warehouse during their regular use.

    Which of the following should the engineer do to determine the issue? (Select Two)

    A. Perform a site survey.
    B. Deploy an FTK Imager.
    C. Create a heat map.
    D. Scan for rogue access points.
    E. Upgrade the security protocols.
    F. Install a captive portal

  • Question 23:

    An organization has hired a new remote workforce. Many new employees are reporting that they are unable to access the shared network resources while traveling. They need to be able to travel to and from different locations on a weekly basis. Shared offices are retained at the headquarters location. The remote workforce will have identical file and system access requirements, and must also be able to log in to the headquarters location remotely. Which of the following BEST represent how the remote employees should have been set up initially? (Select TWO).

    A. User-based access control
    B. Shared accounts
    C. Group-based access control
    D. Mapped drives
    E. Individual accounts
    F. Location-based policies

  • Question 24:

    An organization is setting up a satellite office and wishes to extend the corporate network to the new site. Which of the following is the BEST solution to allow the users to access corporate resources while focusing on usability and security?

    A. Federated services
    B. Single sign-on
    C. Site-to-site VPN
    D. SSL accelerators

  • Question 25:

    A security analyst is specifying requirements for a wireless network. The analyst must explain the security features provided by various architecture choices. Which of the following is provided by PEAP, EAP-TLS, and EAP-TTLS?

    A. Key rotation
    B. Mutual authentication
    C. Secure hashing
    D. Certificate pinning

  • Question 26:

    An employee workstation with an IP address of 204 211.38.211/24 reports it is unable to submit print jobs to a network printer at 204.211.38.52/24 after a firewall upgrade. The active firewall rules are as follows:

    Assuming port numbers have not been changed from their defaults, which of the following should be modified to allow printing to the network printer?

    A. The permit statement for 204.211.38.52/24 should be changed to TCP port 631 instead of UDP.
    B. The deny statement for 204 211.38.52/24 should be changed to a permit statement
    C. The permit statement for 204.211.38.52/24 should be changed to UDP port 443 instead of 631
    D. The permit statement for 204.211.38 211/24 should be changed to TCP port 631 only instead of ALL

  • Question 27:

    A technician is installing a new SIEM and is configuring the system to count the number of times an event occurs at a specific logical location before the system takes action. Which of the following BEST describes the feature being configured by the technician?

    A. Correlation
    B. Aggregation
    C. Event deduplication
    D. Flood guard

  • Question 28:

    When designing a web based client server application with single application server and database cluster backend, input validation should be performed:

    A. On the client
    B. Using database stored procedures
    C. On the application server
    D. Using HTTPS

  • Question 29:

    A security analyst is investigating a suspected security breach and discovers the following in the logs of the potentially compromised server:

    Which of the following would be the BEST method for preventing this type of suspected attack in the future?

    A. Implement password expirations
    B. Implement restrictions on shared credentials
    C. Implement account lockout settings
    D. Implement time-of-day restrictions on this server

  • Question 30:

    Which of the following BEST explains `likelihood of occurrence'?

    A. The chance that an event will happen regardless of how much damage it may cause
    B. The overall impact to the organization once all factors have been considered
    C. The potential for a system to have a weakness or aw that might be exploited
    D. The probability that a threat actor will target and attempt to exploit an organization's systems

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.