SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 811:

    A security analyst is mitigating a pass-the-hash vulnerability on a Windows infrastructure. Given the requirement, which of the following should the security analyst do to MINIMIZE the risk?

    A. Enable CHAP
    B. Disable NTLM
    C. Enable Kerebos
    D. Disable PAP

  • Question 812:

    An organization is moving its human resources system to a cloud services provider. The company plans to continue using internal usernames and passwords with the service provider, but the security manager does not want the service provider to have a company of the passwords. Which of the following options meets all of these requirements?

    A. Two-factor authentication
    B. Account and password synchronization
    C. Smartcards with PINS
    D. Federated authentication

  • Question 813:

    A cybersecurity analyst is looking into the payload of a random packet capture file that was selected for analysis. The analyst notices that an internal host had a socket established with another internal host over a non-standard port. Upon investigation, the origin host that initiated the socket shows this output:

    Given the above output, which of the following commands would have established the questionable socket?

    A. traceroute 8.8.8.8
    B. ping -1 30 8.8.8.8 -a 600
    C. nc -1 192.168.5.1 -p 9856
    D. pskill pid 9487

  • Question 814:

    An organization is concerned about video emissions from users' desktops. Which of the following is the BEST solution to implement?

    A. Screen filters
    B. Shielded cables
    C. Spectrum analyzers
    D. Infrared detection

  • Question 815:

    A security administrator returning from a short vacation receives an account lock-out message when attempting to log into the computer. After getting the account unlocked the security administrator immediately notices a large amount of emails alerts pertaining to several different user accounts being locked out during the past three days. The security administrator uses system logs to determine that the lock-outs were due to a brute force attack on all accounts that has been previously logged into that machine.

    Which of the following can be implemented to reduce the likelihood of this attack going undetected?

    A. Password complexity rules
    B. Continuous monitoring
    C. User access reviews
    D. Account lockout policies

  • Question 816:

    Ann, a new employee, received an email from an unknown source indicating she needed to click on the provided link to update her company's profile. Once Ann clicked the link, a command prompt appeared with the following output:

    Which of the following types of malware was executed?

    A. Ransomware
    B. Adware
    C. Spyware
    D. Virus

  • Question 817:

    Which of the following should be implemented to stop an attacker from interacting with the hypervisor through another guest?

    A. Containers
    B. VM escape protection
    C. Security broker
    D. Virtual desktop

  • Question 818:

    A security analyst is implementing mobile device security for a company. To save money, management has decided on a BYOD model. The company is most concerned with ensuring company data will not be exposed if a phone is lost or stolen. Which of the following techniques BEST accomplish this goal? (Choose two.)

    A. Containerization
    B. Full device encryption
    C. Geofencing
    D. Remote wipe
    E. Application management
    F. Storage segmentation

  • Question 819:

    The help desk received a call from a user who was trying to access a set of files from the day before but received the following error message: File format not recognized. Which of the following types of malware MOST likely caused this to occur?

    A. Ransomware
    B. Polymorphic virus
    C. Rootkit
    D. Spyware

  • Question 820:

    Which of the following strategies should a systems architect use to minimize availability risks due to insufficient storage capacity?

    A. High availability
    B. Scalability
    C. Distributive allocation
    D. Load balancing

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.