SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 551:

    An organization uses an antivirus scanner from Company A on its firewall, an email system antivirus scanner from Company B. and an endpoint antivirus scanner from Company C. This is an example of:

    A. unified threat management.
    B. an OVAL system.
    C. vendor diversity.
    D. alternate processing sites.

  • Question 552:

    A security administrator is configuring a RADIUS server for wireless authentication. The configuration must ensure client credentials are encrypted end-to-end between the client and the authenticator. Which of the following protocols should be configured on the RADIUS server? (Select TWO).

    A. PAP
    B. MSCHAP
    C. PEAP
    D. NTLM
    E. SAML

  • Question 553:

    Ann, a user, reported to the service desk that many files on her computer will not open or the contents are not readable. The service desk technician asked Ann if she encountered any strange messages on boot-up or login, and Ann indicated she did not. Which of the following has MOST likely occurred on Ann's computer?

    A. The hard drive is falling, and the files are being corrupted.
    B. The computer has been infected with crypto-malware.
    C. A replay attack has occurred.
    D. A keylogger has been installed.

  • Question 554:

    In a lessons learned report, it is suspected that a well-organized, well-funded, and extremely sophisticated group of attackers may have been responsible for a breach at a nuclear facility. Which of the following describes the type of actors that may have been implicated?

    A. Nation state
    B. Hacktivist
    C. Insider
    D. Competitor

  • Question 555:

    Which of the following uses precomputed hashes to guess passwords?

    A. Iptables
    B. NAT tables
    C. Rainbow tables
    D. ARP tables

  • Question 556:

    During an incident, a company's CIRT determines it is necessary to observe the continued network-based transactions between a callback domain and the malware running on an enterprise PC. Which of the following techniques would be BEST to enable this activity while reducing the risk of lateral spread and the risk that the adversary would notice any changes?

    A. Physically move the PC to a separate Internet point of presence.
    B. Create and apply microsegmentation rules.
    C. Emulate the malware in a heavily monitored DMZ segment.
    D. Apply network blacklisting rules for the adversary domain.

  • Question 557:

    A systems administrator wants to configure an enterprise wireless solution that supports authentication over HTTPS and wireless encryption using AES. Which of the following should the administrator configure to support these requirements? (Select TWO).

    A. 802.1X
    B. RADIUS federation
    C. WPS
    D. Captive portal
    E. WPA2
    F. WDS

  • Question 558:

    During a forensic investigation, which of the following must be addressed FIRST according to the order of volatility?

    A. Hard drive
    B. RAM
    C. Network attached storage
    D. USB flash drive

  • Question 559:

    A security analyst is assessing a small company's internal servers against recommended security practices. Which of the following should the analyst do to conduct the assessment? (Select TWO).

    A. Compare configurations against platform benchmarks,
    B. Confirm adherence to the company's industry-specific regulations.
    C. Review the company's current security baseline,
    D. Verify alignment with policy related to regulatory compliance
    E. Run an exploitation framework to confirm vulnerabilities

  • Question 560:

    A security analyst is investigating a security breach involving the loss of sensitive data. A user passed the information through social media as vacation photos. Which of the following methods was used to encode the data?

    A. Obfuscation
    B. Steganography
    C. Hashing
    D. Elliptic curve

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.