Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA CompTIA Certifications SY0-501 Questions & Answers

  • Question 761:

    Which of the following implements two-factor authentication on a VPN?

    A. Username, password, and source IP

    B. Public and private keys

    C. HOTP token and logon credentials

    D. Source and destination IP addresses

  • Question 762:

    A company just implemented a new telework policy that allows employees to use personal devices for official email and file sharing while working from home. Some of the requirements are:

    *

    Employees must provide an alternate work location (i.e., a home address).

    *

    Employees must install software on the device that will prevent the loss of proprietary data but will not restrict any other software from being installed. Which of the following BEST describes the MDM options the company is using?

    A.

    Geofencing, content management, remote wipe, containerization, and storage segmentation

    B.

    Content management, remote wipe, geolocation, context-aware authentication, and containerization

    C.

    Application management, remote wipe, geofencing, context-aware authentication, and containerization

    D.

    Remote wipe, geolocation, screen locks, storage segmentation, and full-device encryption

  • Question 763:

    After entering a username and password, an administrator must draw a gesture on a touch screen. Which of the following demonstrates what the administrator is providing?

    A. Multifactor authentication

    B. Something you can do

    C. Biometrics

    D. Two-factor authentication

  • Question 764:

    Which of the following vulnerabilities can lead to unexpected system behavior, including the bypassing of security controls, due to differences between the time of commitment and the time of execution?

    A. Buffer overflow

    B. DLL injection

    C. Pointer dereference

    D. Race condition

  • Question 765:

    A systems administrator needs to configure an SSL remote access VPN according to the following organizational guidelines:

    *

    The VPN must support encryption of header and payload.

    *

    The VPN must route all traffic through the company's gateway. Which of the following should be configured on the VPN concentrator?

    A.

    Full tunnel

    B.

    Transport mode

    C.

    Tunnel mode

    D.

    IPSec

  • Question 766:

    An organization recently acquired an ISO 27001 certification. Which of the following would MOST likely be considered a benefit of this certification?

    A. It allows for the sharing of digital forensics data across organizations.

    B. It provides insurance in case of a data breach.

    C. It provides complimentary training and certification resources to IT security staff.

    D. It certifies the organization can work with foreign entities that require a security clearance.

    E. It assures customers that the organization meets security standards.

  • Question 767:

    A Chief Information Security Officer (CISO) is concerned about the organization's ability to continue business operations in the event of a prolonged DDoS attack on its local datacenter that consumes server resources. Which of the following will the CISO MOST likely recommend to mitigate this risk?

    A. Upgrade the bandwidth available into the datacenter.

    B. Migrate to a geographically dispersed cloud datacenter.

    C. Implement a hot-site failover location.

    D. Switch to a complete SaaS offering to customers.

    E. Implement a challenge response test on all end-user queries.

  • Question 768:

    A startup company is using multiple SaaS and laaS platforms to stand up a corporate infrastructure and build out a customer-facing web application. Which of the following solutions would be BEST to provide security, manageability, and visibility into the platforms?

    A. SIEM

    B. DLP

    C. CASB

    D. SWG

  • Question 769:

    An organization plans to transition the intrusion detection and prevention techniques on a critical subnet to an anomaly-based system. Which of the following does the organization need to determine for this to be successful?

    A. The baseline

    B. The endpoint configurations

    C. The adversary behavior profiles

    D. The IPS signatures

  • Question 770:

    A network administrator has been asked to install an IDS to improve the security posture of an organization. Which of the following control types Is an IDS?

    A. Corrective

    B. Physical

    C. Detective

    D. Administrative

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.