Exam Details

  • Exam Code
    :SY0-601
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Security+
  • Vendor
    :CompTIA
  • Total Questions
    :1334 Q&As
  • Last Updated
    :May 12, 2024

CompTIA CompTIA Security+ SY0-601 Questions & Answers

  • Question 1221:

    Which ol the following is required in order or an IDS and a WAF to be effective on HTTPS traffic?

    A. Hashing

    B. DNS sinkhole

    C. TLS inspection

    D. Data masking

  • Question 1222:

    A security analyst is using OSINT to gather information to verity whether company data is available publicly. Which of the following is the BEST application for the analyst to use?

    A. Harvester

    B. Cuckoo

    C. Nmap

    D. Nessus

  • Question 1223:

    A security analyst is reviewing the vulnerability scan report for a web server following an incident. The vulnerability that was used to exploit the server is present in historical vulnerability scan reports, and a patch is available for the vulnerability. Which of the following is the MOST likely cause?

    A. Security patches were uninstalled due to user impact.

    B. An adversary altered the vulnerability scan reports

    C. A zero-day vulnerability was used to exploit the web server

    D. The scan reported a false negative for the vulnerability

  • Question 1224:

    A company completed a vulnerability scan. The scan found malware on several systems that were running older versions of Windows. Which of the following is MOST likely the cause of the malware infection?

    A. Open permissions

    B. Improper or weak patch management

    C. Unsecure root accounts

    D. Default settings

  • Question 1225:

    Audit logs indicate an administrative account that belongs to a security engineer has been locked out multiple times during the day. The security engineer has been on vacation (or a few days). Which of the following attacks can the account lockout be attributed to?

    A. Backdoor

    B. Brute-force

    C. Rootkit

    D. Trojan

  • Question 1226:

    An organization discovered a disgruntled employee exfiltrated a large amount of PII data by uploading files. Which of the following controls should the organization consider to mitigate this risk?

    A. EDR

    B. Firewall

    C. HIPS

    D. DLP

  • Question 1227:

    Which of the following environments typically hosts the current version configurations and code, compares user-story responses and workflow, and uses a modified version of actual data for testing?

    A. Development

    B. Staging

    C. Production

    D. Test

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-601 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.