SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 41:

    A security analyst is determining the point of compromise after a company was hacked. The analyst checks the server logs and sees that a user account was logged in at night, and several large compressed files were exfiltrated. The analyst then discovers the user last logged in four years ago and was terminated. Which of the following should the security analyst recommend to prevent this type of attack in the future? (Choose two.)

    A. Review and update the firewall settings
    B. Restrict the compromised user account
    C. Disable all user accounts that are not logged in to for 180 days
    D. Enable a login banner prohibiting unauthorized use
    E. Perform an audit of all company user accounts
    F. Create a honeypot to catch the hacker

  • Question 42:

    Which of the following types of vulnerability scans typically returns more detailed and thorough insights into actual system vulnerabilities?

    A. Non-credentialed
    B. Intrusive
    C. Credentialed
    D. Non-Intrusive

  • Question 43:

    Corporations choose to exceed regulatory framework standards because of which of the following incentives?

    A. It improves the legal defensibility of the company.
    B. It gives a social defense that the company is not violating customer privacy laws.
    C. It proves to investors that the company takes APT cyber actors seriously
    D. It results in overall industrial security standards being raised voluntarily.

  • Question 44:

    SIMULATION

    You have just received some room and WiFi access control recommendations from a security consulting company. Click on each building to bring up available security controls. Please implement the following requirements:

    The Chief Executive Officer's (CEO) office had multiple redundant security measures installed on the door to the office. Remove unnecessary redundancies to deploy three-factor authentication, while retaining the expensive iris render.

    The Public Cafe has wireless available to customers. You need to secure the WAP with WPA and place a passphrase on the customer receipts.

    In the Data Center you need to include authentication from the "something you know" category and take advantage of the existing smartcard reader on the door.

    In the Help Desk Office, you need to require single factor authentication through the use of physical tokens given to guests by the receptionist.

    The PII Office has redundant security measures in place. You need to eliminate the redundancy while maintaining three-factor authentication and retaining the more expensive controls.

    Instructions: The original security controls for each office can be reset at any time by selecting the Reset button. Once you have met the above requirements for each office, select the Save button. When you have completed the entire simulation, please select the Done button to submit. Once the simulation is submitted, please select the Next button to continue.

    Correct Answer. Check the answer below

  • Question 45:

    A company hires a consulting firm to crawl its Active Directory network with a non-domain account looking for unpatched systems. Actively taking control of systems is out of scope, as is the creation of new administrator accounts. For which of the following is the company hiring the consulting firm?

    A. Vulnerability scanning
    B. Penetration testing
    C. Application fuzzing
    D. User permission auditing

  • Question 46:

    A company is planning to utilize its legacy desktop systems by converting them into dummy terminals and moving all heavy applications and storage to a centralized server that hosts all of the company's required desktop applications. Which of the following describes the BEST deployment method to meet these requirements?

    A. IaaS
    B. VM sprawl
    C. VDI
    D. PaaS

  • Question 47:

    A company is terminating an employee for misbehavior. Which of the following steps is MOST important in the process of disengagement from this employee?

    A. Obtain a list of passwords used by the employee.
    B. Generate a report on outstanding projects the employee handled.
    C. Have the employee surrender company identification.
    D. Have the employee sign an NDA before departing.

  • Question 48:

    Which of the following often operates in a client-server architecture to act as a service repository, providing enterprise consumers access to structured threat Intelligence data?

    A. STIX
    B. CIRT
    C. OSINT
    D. TAXII

  • Question 49:

    An organization prefers to apply account permissions to groups and not individual users, but allows for exceptions that are justified. Some systems require a machine-to-machine data exchange and an associated account to perform this data exchange. One particular system has data in a folder that must be modified by another system. No user requires access to this folder; only the other system needs access to this folder. Which of the following is the BEST account management practice?

    A. Create a service account and apply the necessary permissions directly to the service account itself
    B. Create a service account group, place the service account in the group, and apply the permissions on the group
    C. Create a guest account and restrict the permissions to only the folder with the data
    D. Create a generic account that will only be used for accessing the folder, but disable the account until it is needed for the data exchange
    E. Create a shared account that administrators can use to exchange the data, but audit the shared account activity

  • Question 50:

    A network administrator needs to allocate a new network for the RandD group. The network must not be accessible from the Internet regardless of the network firewall or other external misconfigurations. Which of the following settings should the network administrator implement to accomplish this?

    A. Configure the OS default TTL to 1
    B. Use NAT on the RandD network
    C. Implement a router ACL
    D. Enable protected ports on the switch

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.