In the event of a security incident, which of the following should be captured FIRST?
A. An external hard drive
B. System memory
C. An internal hard drive
D. Network interface data
An email systems administrator is configuring the mail server to prevent spear phishing attacks through email messages. Which of the following refers to what the administrator is doing?
A. Risk avoidance
B. Risk mitigation
C. Risk transference
D. Risk acceptance
When choosing a hashing algorithm for storing passwords in a web server database, which of the following is the BEST explanation for choosing HMAC-MD5 over simple MD5?
A. HMAC provides hardware acceleration thus speeding up authentication
B. HMAC adds a transport layer handshake which improves authentication
C. HMAC-MD5 can be decrypted taster speeding up performance
D. HMAC-M05 is more resistant to brute forcing
A member of the IR team has identified an infected computer.
Which of the following IR phases should the team member conduct NEXT?
A. Eradication
B. Recovery
C. Lessons learned
D. Containment
An organization has created a review process to determine how to best handle data with different sensitivity levels. The process includes the following requirements:
Soft copy Pll must be encrypted.
Hard copy Pll must be placed In a locked container.
Soft copy PHI must be encrypted and audited monthly.
Hard copy PHI must be placed in a locked container and inventoried monthly.
Locked containers must be approved and designated for document storage. Any violations must be reported to the Chief Security Officer {CSO}.
While searching for coffee in the kitchen, an employee unlocks a cabinet and discovers a list of customer names and phone numbers. Which of the following actions should the employee take?
A. Put the document back in the cabinet, lock the cabinet, and report the incident to the CSO.
B. Take custody of the document, secure it at a desk, and report the incident to the CSO.
C. Take custody of the document and immediately report the incident to the CSO.
D. Put the document back in the cabinet, inventory the contents, lock the cabinet, and report the incident to the CSO.
A company is deploying MFDs in its office to improve employee productivity when dealing with paperwork. Which of the following concerns is MOST likely to be raised as a possible security issue in relation Io these devices?
A. Sensitive scanned materials being saved on the local hard drive
B. Faulty printer drivers causing PC performance degradation
C. Improperly congured NIC settings interfering with network security
D. Excessive disk space consumption due to storing large documents
A user is unable to obtain an IP address from the corporate DHCP server. Which of the following is MOST likely the cause?
A. Default configuration
B. Resource exhaustion
C. Memory overflow
D. Improper input handling
Which of the following involves the use of targeted and highly crafted custom attacks against a population of users who may have access to a particular service or program?
A. Hoaxing
B. Spear phishing
C. Vishing
D. Phishing
An administrator is setting up automated remote file transfers to another organization. The other organization has the following requirements for the connection protocol.
Encryption in transit is required
Mutual authentication must be used.
Certificate authentication must be used {no passwords).
Which of the following should the administrator choose?
A. SNMPv3
B. SFTP
C. TLS
D. LDAPS
E. SRTP
Which of the following is an algorithm family that was developed for use cases in which power consumption and lower computing power are constraints?
A. Elliptic curve
B. RSA
C. Diffie-Hellman
D. SHA
Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-501 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.