SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 361:

    Which of the following is a random value appended to a credential that makes the credential less susceptible to compromise when hashed?

    A. Nonce
    B. Salt
    C. OTP
    D. Block cipher
    E. IV

  • Question 362:

    A manager wants to distribute a report to several other managers within the company. Some of them reside in remote locations that are not connected to the domain but have a local server. Because there is sensitive data within the report and the size of the report is beyond the limit of the email attachment size, emailing the report is not an option.

    Which of the following protocols should be implemented to distribute the report securely? (Select three.)

    A. S/MIME
    B. SSH
    C. SNMPv3
    D. FTPS
    E. SRTP
    F. HTTPS
    G. LDAPS

  • Question 363:

    A network technician is setting up a segmented network that will utilize a separate ISP to provide wireless access to the public area for a company. Which of the following wireless security methods should the technician implement to provide basic accountability for access to the public network?

    A. Pre-shared key
    B. Enterprise
    C. Wi-Fi Protected setup
    D. Captive portal

  • Question 364:

    A security administrator determined that users within the company are installing unapproved software. Company policy dictates that only certain applications may be installed or ran on the user's computers without exception. Which of the following should the administrator do to prevent all unapproved software from running on the user's computer?

    A. Deploy antivirus software and configure it to detect and remove pirated software
    B. Configure the firewall to prevent the downloading of executable files
    C. Create an application whitelist and use OS controls to enforce it
    D. Prevent users from running as administrator so they cannot install software.

  • Question 365:

    Which of the following is the MOST likely motivation for a script kiddie threat actor?

    A. Financial gain
    B. Notoriety
    C. Political expression
    D. Corporate espionage

  • Question 366:

    Correct Answer. Check the answer below

  • Question 367:

    The Chief Information Security Officer (CISO) is asking for ways to protect against zero-day exploits. The CISO is concerned that an unrecognized threat could compromise corporate data and result in regulatory fines as well as poor

    corporate publicity. The network is mostly flat, with split staff/guest wireless functionality.

    Which of the following equipment MUST be deployed to guard against unknown threats?

    A. Cloud-based antivirus solution, running as local admin, with push technology for definition updates
    B. Implementation of an off-site datacenter hosting all company data, as well as deployment of VDI for all client computing needs
    C. Host-based heuristic IPS, segregated on a management VLAN, with direct control of the perimeter firewall ACLs
    D. Behavior-based IPS with a communication link to a cloud-based vulnerability and threat feed

  • Question 368:

    A server administrator needs to administer a server remotely using RDP, but the specified port is closed on the outbound firewall on the network. The access the server using RDP on a port other than the typical registered port for the RDP protocol?

    A. TLS
    B. MPLS
    C. SCP
    D. SSH

  • Question 369:

    Which of the following can affect electrostatic discharge in a network operations center?

    A. Fire suppression
    B. Environmental monitoring
    C. Proximity card access
    D. Humidity controls

  • Question 370:

    A remote intruder wants to take inventory of a network so exploits can be researched. The intruder is looking for information about software versions on the network. Which of the following techniques is the intruder using?

    A. Banner grabbing
    B. Port scanning
    C. Packet sniffing
    D. Virus scanning

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.