SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 601:

    An email systems administrator is configuring the mail server to prevent spear phishing attacks through email messages. Which of the following refers to what the administrator is doing?

    A. Risk avoidance
    B. Risk mitigation
    C. Risk transference
    D. Risk acceptance

  • Question 602:

    A forensic expert is given a hard drive from a crime scene and is asked to perform an investigation. Which of the following is the FIRST step the forensic expert needs to take the chain of custody?

    A. Make a forensic copy
    B. Create a hash of the hard rive
    C. Recover the hard drive data
    D. Update the evidence log

  • Question 603:

    A red team initiated a DoS attack on the management interface of a switch using a known vulnerability The monitoring solution then raised an alert prompting a network engineer to log in to the switch to diagnose the issue. When the engineer logged in. the red team was able to capture the credentials and subsequently log in to the switch. Which of the following actions should the network team take to prevent this type of breach from reoccurring?

    A. Encrypt all communications with TLS 1 3
    B. Transition from SNMPv2c to SNMPv3 with AES-256
    C. Enable Secure Shell and disable Telnet
    D. Use a password manager with complex passwords

  • Question 604:

    A small retail business has a local store and a newly established and growing online storefront. A recent storm caused a power outage to the business and the local ISP, resulting in several hours of lost sales and delayed order processing. The business owner now needs to ensure two things:

    Protection from power outages Always-available connectivity in case of an outage

    The owner has decided to implement battery backups for the computer equipment. Which of the following would BEST fulfill the owner's second need?

    A. Lease a telecommunications line to provide POTS for dial-up access.
    B. Connect the business router to its own dedicated UPS.
    C. Purchase services from a cloud provider for high availability.
    D. Replace the business's wired network with a wireless network.

  • Question 605:

    A botnet has hit a popular website with a massive number of GRE-encapsulated packets to perform a DDoS attack. News outlets discover a certain type of refrigerator was exploited and used to send outbound packets to the website that crashed. To which of the following categories does the refrigerator belong?

    A. SoC
    B. ICS
    C. IoT
    D. MFD

  • Question 606:

    During incident response procedures, technicians capture a unique identifier for a piece of malware running in memory. This captured information is referred to as:

    A. a hash value.
    B. the SSID.
    C. the GUID.
    D. a system image.

  • Question 607:

    Using an ROT13 cipher to protect confidential information for unauthorized access is known as:

    A. steganography.
    B. obfuscation.
    C. non-repudiation.
    D. diffusion.

  • Question 608:

    An organization is expanding its network team. Currently, it has local accounts on all network devices, but with growth, it wants to move to centrally managed authentication. Which of the following are the BEST solutions for the organization? (Select TWO)

    A. TACACS+
    B. CHAP
    C. LDAP
    D. RADIUS
    E. MSCHAPv2

  • Question 609:

    A transitive trust:

    A. is automatically established between a parent and a child
    B. is used to update DNS records
    C. allows access to untrusted domains
    D. can be used in place of a hardware token for logins

  • Question 610:

    An organization wants to set up a wireless network in the most secure way. Budget is not a major consideration, and the organization is willing to accept some complexity when clients are connecting. It is also willing to deny wireless connectivity for clients who cannot be connected in the most secure manner. Which of the following would be the MOST secure setup that conforms to the organization's requirements?

    A. Enable WPA2-PSK for older clients and WPA2-Enterprise for all other clients.
    B. Enable WPA2-PSK, disable all other modes, and implement MAC filtering along with port security.
    C. Use WPA2-Enterprise with RADIUS and disable pre-shared keys.
    D. Use WPA2-PSK with a 24-character complex password and change the password monthly.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.