SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 331:

    An audit has revealed that database administrators are also responsible for auditing database changes and backup logs. Which of the following access control methodologies would BEST mitigate this concern?

    A. Time of day restrictions
    B. Principle of least privilege
    C. Role-based access control
    D. Separation of duties

  • Question 332:

    Which of the following types of vulnerability scans typically returns more detailed and thorough insights into actual system vulnerabilities?

    A. Non-credentialed
    B. Intrusive
    C. Credentialed
    D. Non-intrusive

  • Question 333:

    Security administrators attempted corrective action after a phishing attack. Users are still experiencing trouble logging in, as well as an increase in account lockouts. Users' email contacts are complaining of an increase in spam and social networking requests. Due to the large number of affected accounts, remediation must be accomplished quickly. Which of the following actions should be taken FIRST? (Select TWO)

    A. Disable the compromised accounts
    B. Update WAF rules to block social networks
    C. Remove the compromised accounts with all AD groups
    D. Change the compromised accounts' passwords
    E. Disable the open relay on the email server
    F. Enable sender policy framework

  • Question 334:

    A system administrator wants to implement an internal communication system that will allow employees to send encrypted messages to each other. The system must also support non- repudiation. Which of the following implements all these requirements?

    A. Bcrypt
    B. Blowfish
    C. PGP
    D. SHA

  • Question 335:

    Malicious traffic from an internal network has been detected on an unauthorized port on an application server. Which of the following network-based security controls should the engineer consider implementing?

    A. ACLs
    B. HIPS
    C. NAT
    D. MAC filtering

  • Question 336:

    While performing surveillance activities, an attacker determines that an organization is using 802.1X to secure LAN access. Which of the following attack mechanisms can the attacker utilize to bypass the identified network security?

    A. MAC spoofing
    B. Pharming
    C. Xmas attack
    D. ARP poisoning

  • Question 337:

    Which of the following would MOST likely appear in an uncredentialed vulnerability scan?

    A. Self-signed certificates
    B. Missing patches
    C. Auditing parameters
    D. Inactive local accounts

  • Question 338:

    A developer is building a new web portal for internal use. The web portal will only the accessed by internal users and will store operational documents. Which of the following certicate types should the developer install if the company is MOST interested in minimizing costs?

    A. Wildcard
    B. Code signing
    C. Root
    D. Self-signed

  • Question 339:

    A security analyst wants to limit the use of USB and external drives to protect against malware. as well as protect les leaving a user's computer. Which of the following is the BEST method to use?

    A. Firewall
    B. Router
    C. Antivirus software
    D. Data loss prevention

  • Question 340:

    Which of the following implements two-factor authentication?

    A. A phone system requiring a PIN to make a call
    B. At ATM requiring a credit card and PIN
    C. A computer requiring username and password
    D. A datacenter mantrap requiring fingerprint and iris scan

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.