SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 441:

    A software development company needs to augment staff by hiring consultants for a high- stakes project The project has the following requirements: Consultants will have access to flighty confidential, proprietary data.

    Consultants will not be provided with company-owned assets.

    Work needs to start Immediately.

    Consultants will be provided with Internal email addresses for communications.

    Which of the following solutions is the BEST method lor controlling data exfiltration during this project?

    A. Require that all consultant activity be restricted to a secure VDI environment.
    B. Require the consultants to sign an agreement stating they will only use the company- provided email address for communications during the project.
    C. Require updated antivirus. USB blocking, and a host-based firewall on all consultant devices.
    D. Require the consultants to conned to the company VPN when accessing confidential resources.

  • Question 442:

    Users are attempting to access a company's website but are transparently redirected to another websites. The users confirm the URL is correct. Which of the following would BEST prevent this issue in the futue?

    A. DNSSEC
    B. HTTPS
    C. IPSec
    D. TLS/SSL

  • Question 443:

    An organization uses SSO authentication for employee access to network resources. When an employee resigns, as per the organization's security policy, the employee's access to all network resources is terminated immediately. Two weeks later, the former employee sends an email to the help desk for a password reset to access payroll information from the human resources server. Which of the following represents the BEST course of action?

    A. Approve the former employee's request, as a password reset would give the former employee access to only the human resources server.
    B. Deny the former employee's request, since the password reset request came from an external email address.
    C. Deny the former employee's request, as a password reset would give the employee access to all network resources.
    D. Approve the former employee's request, as there would not be a security issue with the former employee gaining access to network resources.

  • Question 444:

    Which of the following enables a corporation to extend local security policies to corporate resources hosted in a CSP's infrastructure?

    A. PKI
    B. CRL
    C. Directory services
    D. CASB
    E. VDI

  • Question 445:

    An organization with a low tolerance tor user inconvenience wants to protect laptop hard drives against loss of data theft Which of the following would be the MOST acceptable?

    A. SED
    B. HSU
    C. DLP
    D. TPM

  • Question 446:

    An auditor requiring an organization to perform real-time validation of SSL certificates. Which of the following should the organization implement?

    A. OCSP
    B. CRL
    C. CSR
    D. KDC

  • Question 447:

    A technician is recommending preventive physical security controls for a server room. Which of the technician MOST likely recommend? (Select Two).

    A. Geofencing
    B. Video Surveillance
    C. Protected cabinets
    D. Mantrap
    E. Key exchange
    F. Authorized personnel signage

  • Question 448:

    Which of the following would provide a safe environment for an application to access only the resources needed to function while not having access to run at the system level?

    A. Sandbox
    B. Honeypot
    C. GPO
    D. DMZ

  • Question 449:

    A user wants to send a confidential message to a customer to ensure unauthorized users cannot access the information. Which of the following can be used to ensure the security of the document while in transit and at rest?

    A. BCRYPT
    B. PGP
    C. FTPS
    D. S/MIME

  • Question 450:

    Which of the following must be intact for evidence to be admissible in court?

    A. Chain of custody
    B. Order of volatility
    C. Legal hold
    D. Preservation

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.