Exam Details

  • Exam Code
    :SY0-601
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1334 Q&As
  • Last Updated
    :May 09, 2025

CompTIA CompTIA Certifications SY0-601 Questions & Answers

  • Question 1071:

    A security engineer needs to Implement the following requirements:

    1.

    All Layer 2 switches should leverage Active Directory tor authentication.

    2.

    All Layer 2 switches should use local fallback authentication If Active Directory Is offline.

    3.

    All Layer 2 switches are not the same and are manufactured by several vendors.

    Which of the following actions should the engineer take to meet these requirements? (Select TWO).

    A. Implement RADIUS.

    B. Configure AAA on the switch with local login as secondary

    C. Configure port security on the switch with the secondary login method.

    D. Implement TACACS+

    E. Enable the local firewall on the Active Directory server.

    F. Implement a DHCP server

  • Question 1072:

    An engineer needs to deploy a security measure to identify and prevent data tampering within the enterprise. Which of the following will accomplish this goal?

    A. Antivirus

    B. IPS.

    C. FTP

    D. FIM

  • Question 1073:

    An organization is developing an authentication service for use at the entry and exit ports of country borders.

    1.

    The service will use data feeds obtained from passport systems, passenger manifests, and high-definition video feeds from CCTV systems that are located at the ports.

    2.

    The service will incorporate machine-learning techniques to eliminate biometric enrollment processes while still allowing authorities to identify passengers with increasing accuracy over time.

    3.

    The more frequently passengers travel, the more accurately the service will identify them.

    Which of the following biometrics will MOST likely be used, without the need for enrollment? (Choose two.)

    A. Voice

    B. Gait

    C. Vein

    D. Facial

    E. Retina

    F. Fingerprint

  • Question 1074:

    A network engineer is troubleshooting wireless network connectivity issues that were reported by users. The issues are occurring only in the section of the building that is closest to the parking lot. Users are intermittently experiencing slow speeds when accessing websites and are unable to connect to network drives. The issues appear to increase when laptop users return desks after using their devices in other areas of the building. There have also been reports of users being required to enter their credentials on web pages in order to gain access to them.

    Which of the following is the MOST likely cause of this issue?

    A. An external access point is engaging in an evil-twin attack.

    B. The signal on the WAP needs to be increased in that section of the building.

    C. The certificates have expired on the devices and need to be reinstalled.

    D. The users in that section of the building are on a VLAN that is being blocked by the firewall

  • Question 1075:

    Which of the following is the purpose of a risk register?

    A. To define the level or risk using probability and likelihood

    B. To register the risk with the required regulatory agencies

    C. To identify the risk, the risk owner, and the risk measures

    D. To formally log the type of risk mitigation strategy the organization is using

  • Question 1076:

    Which of the following is assured when a user signs an email using a private key?

    A. Non-repudiation

    B. Confidentiality

    C. Availably

    D. Authentication

  • Question 1077:

    Which of the following provides the BEST protection for sensitive information and data stored in cloud-based services but still allows for full functionality and searchability of data within the cloud-based services?

    A. Data encryption

    B. Data masking

    C. Anonymization

    D. Tokenization

  • Question 1078:

    A customer service representative reported an unusual text message that was sent to the help desk. The message contained an unrecognized invoice number with a large balance due and a link to click for more details. Which of the following BEST describes this technique?

    A. Vishing

    B. Whaling

    C. Phishing

    D. Smishing

  • Question 1079:

    During an incident response, an analyst applied rules to all inbound traffic on the border firewall and implemented ACLs on each critical server Following an investigation, the company realizes it is still vulnerable because outbound traffic is not restricted and the adversary is able lo maintain a presence in the network. In which of the following stages of the Cyber Kill Chain is the adversary currently operating?

    A. Reconnaissance

    B. Command and control

    C. Actions on objective

    D. Exploitation

  • Question 1080:

    Data exfiltration analysis indicates that an attacker managed to download system configuration notes from a web server. The web-server logs have been deleted, but analysts have determined that the system configuration notes were stored in the database administrator's folder on the web server.

    Which of the following attacks explains what occurred? (Select TWO)

    A. Pass-the- hash

    B. Directory traversal

    C. SQL injection

    D. Privilege escalation

    E. Cross-site scnpting

    F. Request forgery

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-601 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.