SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 511:

    The IT department is deploying new computers. To ease the transition, users will be allowed to access their old and new systems. The help desk is receive reports that users are experiencing the following error when attempting to log in to

    their previous system:

    Logon Failure: Access Denied

    Which of the following can cause this issue?

    A. Permission issues
    B. Access violations
    C. Certificate issues
    D. Misconfigured devices

  • Question 512:

    Which of the following represents a multifactor authentication system?

    A. An iris scanner coupled with a palm print reader and fingerprint scanner with liveness detection.
    B. A secret passcode that prompts the user to enter a secret key if entered correctly.
    C. A digital certificate on a physical token that is unlocked with a secret passcode.
    D. A one-time password token combined with a proximity badge.

  • Question 513:

    Which of the following penetration testing concepts is an attacker MOST interested in when placing the path of a malicious file in the Windows/CurrentVersion/Run registry key?

    A. Persistence
    B. Pivoting
    C. Active reconnaissance
    D. Escalation of privilege

  • Question 514:

    Ann is the IS manager for several new systems in which the classification of the systems' data are being decided. She is trying to determine the sensitivity level of the data being processed. Which of the following people should she consult to determine the data classification?

    A. Steward
    B. Custodian
    C. User
    D. Owner

  • Question 515:

    A security engineer is configuring a system that requires the X.509 certificate information to be pasted into a form field in Base64 encoded format to import it into the system. Which of the following certificate formats should the engineer use to obtain the information in the required format?

    A. PFX
    B. PEM
    C. DER
    D. CER

  • Question 516:

    After running an online password cracking tool, an attacker recovers the following password:

    gh;jSKSTOi;618and

    Based on the above information, which of the following technical controls have been implemented? (Select TWO).

    A. Complexity
    B. Encryption
    C. Hashing
    D. Length
    E. Salting
    F. Stretching

  • Question 517:

    An organization is building a new customer services team, and the manager needs to keep the team focused on customer issues and minimize distractions. The users have a specific set of tools installed, which they must use to perform their duties. Other tools are not permitted for compliance and tracking purposes. Team members have access to the Internet for product lookups and to research customer issues. Which of the following should a security engineer employ to fulfill the requirements for the manager?

    A. Install a web application firewall.
    B. Install HIPS on the team's workstations.
    C. Implement containerization on the workstations.
    D. Configure whitelisting for the team.

  • Question 518:

    As a security measure, an organization has disabled all external media from accessing the network Since some users may have data that needs to be transferred to the network, which of the would BEST assist a security administrator with transferring the data while keeping the internal network secure?

    A. Upload the media in the DMZ
    B. Upload the data in a separate VLAN
    C. Contact the data custodian
    D. Use a standalone scanning system

  • Question 519:

    To help prevent one job role from having sufficient access to create, modify, and approve payroll data, which of the following practices should be employed?

    A. Least privilege
    B. Job rotation
    C. Background checks
    D. Separation of duties

  • Question 520:

    During an application design, the development team specifics a LDAP module for single sign-on communication with the company's access control database. This is an example of which of the following?

    A. Application control
    B. Data in-transit
    C. Identification
    D. Authentication

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.