Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA CompTIA Certifications SY0-501 Questions & Answers

  • Question 391:

    After surfing the Internet, Joe, a user, woke up to find all his files were corrupted. His wallpaper was replaced by a message stating the files were encrypted and he needed to transfer money to a foreign country to recover them. Joe is a victim of:

    A. a keylogger

    B. spyware

    C. ransomware

    D. a logic bomb

  • Question 392:

    Security administrators attempted corrective action after a phishing attack. Users are still experiencing trouble logging in, as well as an increase in account lockouts. Users' email contacts are complaining of an increase in spam and social networking requests. Due to the large number of affected accounts, remediation must be accomplished quickly. Which of the following actions should be taken FIRST? (Select TWO)

    A. Disable the compromised accounts

    B. Update WAF rules to block social networks

    C. Remove the compromised accounts with all AD groups

    D. Change the compromised accounts' passwords

    E. Disable the open relay on the email server

    F. Enable sender policy framework

  • Question 393:

    A wireless network has the following design requirements:

    Authentication must not be dependent on enterprise directory service It must allow background reconnection for mobile users It must not depend on user certificates Which of the following should be used in the design to meet the

    requirements? (Choose two.)

    A. PEAP

    B. PSK

    C. Open systems authentication

    D. EAP-TLS

    E. Captive portals

  • Question 394:

    Which of the following strategies should a systems architect use to minimize availability risks due to insufficient storage capacity?

    A. High availability

    B. Scalability

    C. Distributive allocation

    D. Load balancing

  • Question 395:

    A security engineer wants to implement a site-to-site VPN that will require SSL certificates for mutual authentication. Which of the following should the engineer implement if the design requires client MAC address to be visible across the tunnel?

    A. Tunnel mode IPSec

    B. Transport mode VPN IPSec

    C. L2TP

    D. SSL VPN

  • Question 396:

    A security administrator wants to configure a company's wireless network in a way that will prevent wireless clients from broadcasting the company's SSID. Which of the following should be configured on the company's access points?

    A. Enable ESSID broadcast

    B. Enable protected management frames

    C. Enable wireless encryption

    D. Disable MAC authentication

    E. Disable WPS

    F. Disable SSID broadcast

  • Question 397:

    A security auditor is putting together a report for the Chief Executive Officer (CEO) on personnel security and its impact on the security posture of the whole organization. Which of the following would be the MOST important factor to consider when it comes to personnel security?

    A. Insider threats

    B. Privilege escalation

    C. Hacktivist

    D. Phishing through social media

    E. Corporate espionage

  • Question 398:

    Which of the following BEST describes a network-based attack that can allow an attacker to take full control of a vulnerable host?

    A. Remote exploit

    B. Amplification

    C. Sniffing

    D. Man-in-the-middle

  • Question 399:

    The computer resource center issued smartphones to all first-level and above managers. The managers have the ability to install mobile tools. Which of the following tools should be implemented to control the types of tools the managers install?

    A. Download manager

    B. Content manager

    C. Segmentation manager

    D. Application manager

  • Question 400:

    Which of the following would allow for the QUICKEST restoration of a server into a warm recovery site in a case in which server data mirroring is not enabled?

    A. Full backup

    B. Incremental backup

    C. Differential backup

    D. Snapshot

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.