SY0-501 Exam Details

  • Exam Code
    :SY0-501
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1423 Q&As
  • Last Updated
    :Sep 04, 2023

CompTIA SY0-501 Online Questions & Answers

  • Question 971:

    Which of the following BEST distinguishes Agile development from other methodologies in terms of vulnerability management?

    A. Cross-functional teams
    B. Rapid deployments
    C. Daily standups
    D. Peer review
    E. Creating user stories

  • Question 972:

    A systems administrator just issued the ssh-keygen rsa command on a Linux terminal. Which of the following BEST describes what the rsa portion of the command represents?

    A. A key generation algorithm
    B. A hashing algorithm
    C. A public key infrastructure type
    D. A certificate authority type

  • Question 973:

    A web server, which is configured to use TLS with AES-GCM-256, SHA-384, and ECDSA, recently suffered an information loss breach. Which of the following is MOST likely the cause?

    A. Insufficient key bit length
    B. Weak cipher suite
    C. Unauthenticated encryption method
    D. Poor implementation

  • Question 974:

    Which of the following disaster recovery sites would require the MOST time to get operations beck online?

    A. Colocation
    B. Cold
    C. Hot
    D. Warm

  • Question 975:

    A security engineer is concerned about susceptibility to HTTP downgrade attacks because the current customer portal redirects users from port 80 to the secure site on port 443. Which of the following would be MOST appropriate to mitigate the attack?

    A. DNSSEC
    B. HSTS
    C. Certificate pinning
    D. OCSP

  • Question 976:

    A home invasion occurred recently in which an intruder compromised a home network and accessed a WiFIenabled baby monitor while the baby's parents were sleeping. Which of the following BEST describes how the intruder accessed the monitor?

    A. Outdated antivirus
    B. WiFi signal strength
    C. Social engineering
    D. Default configuration

  • Question 977:

    A systems administrator is reviewing the following information from a compromised server:

    Given the above information, which of the following processes was MOST likely exploited via a remote buffer overflow attack?

    A. Apache
    B. LSASS
    C. MySQL
    D. TFTP

  • Question 978:

    Which of the following is an example of resource exhaustion?

    A. A penetration tester requests every available IP address from a DHCP server.
    B. An SQL injection attack returns confidential data back to the browser.
    C. Server CPU utilization peaks at 100% during the reboot process.
    D. System requirements for a new software package recommend having 12GB of RAM, but only BGB are available.

  • Question 979:

    A security engineer wants to implement a site-to-site VPN that will require SSL certificates for mutual authentication. Which of the following should the engineer implement if the design requires client MAC address to be visible across the tunnel?

    A. Tunnel mode IPSec
    B. Transport mode VPN IPSec
    C. L2TP
    D. SSL VPN

  • Question 980:

    A security administrator has been assigned to review the security posture of the standard corporate system image for virtual machines. The security administrator conducts a thorough review of the system logs, installation procedures, and

    network configuration of the VM image. Upon reviewing the access logs and user accounts, the security administrator determines that several accounts will not be used in production.

    Which of the following would correct the deficiencies?

    A. Mandatory access controls
    B. Disable remote login
    C. Host hardening
    D. Disabling services

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.