SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 311:

    A credentialed vulnerability scan is often preferred over a non-credentialed scan because credentialed scans:

    A. generates more false positives.
    B. rely solely on passive measures.
    C. are always non-intrusive.
    D. provide more accurate data.

  • Question 312:

    A security analyst is hardening a large-scale wireless network. The primary requirements are the following

    *

    Must use authentication through EA

    *

    Must use an AAA server

    *

    Must use the most secure encryption protocol

    Given these requirements, which of the following should the analyst implement and recommend? (Select TWO).

    A. 802.1X
    B. 802.3
    C. LDAP
    D. TKIP
    E. CCMP
    F. WPA2-PSK

  • Question 313:

    An organization is developing its mobile device management policies and procedures and is concerned about vulnerabilities associated with sensitive data being saved to a mobile device, as well as weak authentication when using a PIN As part or discussions on the topic several solutions are proposed

    Which of the following controls when required together, will address the protection of data at-rest as well as strong authentication? (Select TWO).

    A. Containerization
    B. FDE
    C. Remote wipe capability
    D. MDM
    E. MFA
    F. OTA updates

  • Question 314:

    Given the information below:

    MD5HASH document.doc 049eab40fd36caadlfab10b3cdf4a883

    MD5HASH image.jpg 049eab40fd36caadlfab10b3cdf4a883

    Which of the following concepts are described above? (Choose two.)

    A. Salting
    B. Collision
    C. Steganography
    D. Hashing
    E. Key stretching

  • Question 315:

    A security team has downloaded a public database of the largest collection of password dumps on the Internet. This collection contains the cleartext credentials of every major breach for the last four years. The security team pulls and compares users' credentials to the database and discovers that more than 30% of the users were still using passwords discovered in this list. Which of the following would be the BEST combination to reduce the risks discovered?

    A. Password length, password encryption, password complexity
    B. Password complexity, least privilege, password reuse
    C. Password reuse, password complexity, password expiration
    D. Group policy, password history, password encryption

  • Question 316:

    A company that processes sensitive information has implemented a BYOD policy and an MDM solution to secure sensitive data that is processed by corporate and personally owned mobile devices. Which of the following should the company implement to prevent sensitive data from being stored on mobile devices?

    A. VDI
    B. Storage segmentation
    C. Containerization
    D. USB OTG
    E. Geofencing

  • Question 317:

    The chief Security Officer (CSO) has reported a rise in data loss but no break ins have occurred. By doing which of the following is the CSO most likely to reduce the number of incidents?

    A. Implement protected distribution
    B. Empty additional firewalls
    C. Conduct security awareness training
    D. Install perimeter barricades

  • Question 318:

    An organization has an account management policy that defines parameters around each type of account. The policy specifies different security attributes, such as longevity, usage auditing, password complexity, and identity proofing. The goal of the account management policy is to ensure the highest level of security while providing the greatest availability without compromising data integrity for users. Which of the following account types should the policy specify for service technicians from corporate partners?

    A. Guest account
    B. User account
    C. Shared account
    D. Privileged user account
    E. Default account
    F. Service account

  • Question 319:

    When attempting to secure a mobile workstation, which of the following authentication technologies rely on the user's physical characteristics? (Select TWO)

    A. MAC address table
    B. Retina scan
    C. Fingerprint scan
    D. Two-factor authentication
    E. CAPTCHA
    F. Password string

  • Question 320:

    Which of the following allows an auditor to test proprietary-software compiled code for security flaws?

    A. Fuzzing
    B. Static review
    C. Code signing
    D. Regression testing

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.