Exam Details

  • Exam Code
    :SY0-601
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1334 Q&As
  • Last Updated
    :May 17, 2025

CompTIA CompTIA Certifications SY0-601 Questions & Answers

  • Question 211:

    A company hired a consultant to perform an offensive security assessment covering penetration testing and social engineering. Which of the following teams will conduct this assessment activity?

    A. White

    B. Purple

    C. Blue

    D. Red

  • Question 212:

    An organization suffered numerous multiday power outages at its current location. The Chief Executive Officer wants to create a disaster recovery strategy to resolve this issue. Which of the following options offer low-cost solutions? (Choose two.)

    A. Warm site

    B. Generator

    C. Hot site

    D. Cold site

    E. Cloud backups

    F. UPS

  • Question 213:

    A security analyst discovers that one of the web APIs is being abused by an unknown third party. Logs indicate that the third party is attempting to manipulate the parameters being passed to the API endpoint. Which of the following solutions would best help to protect against the attack?

    A. DLP

    B. SIEM

    C. NIDS

    D. WAF

  • Question 214:

    A software development manager wants to ensure the authenticity of the code created by the company. Which of the following options is the most appropriate?

    A. Testing input validation on the user input fields

    B. Performing code signing on company-developed software

    C. Performing static code analysis on the software D. Ensuring secure cookies are used

  • Question 215:

    A company's end users are reporting that they are unable to reach external websites. After reviewing the performance data for the DNS severs, the analyst discovers that the CPU, disk, and memory usage are minimal, but the network interface is flooded with inbound traffic. Network logs show only a small number of DNS queries sent to this server. Which of the following best describes what the security analyst is seeing?

    A. Concurrent session usage

    B. Secure DNS cryptographic downgrade

    C. On-path resource consumption

    D. Reflected denial of service

  • Question 216:

    A company's legal department drafted sensitive documents in a SaaS application and wants to ensure the documents cannot be accessed by individuals in high-risk countries. Which of the following is the most effective way to limit this access?

    A. Data masking

    B. Encryption

    C. Geolocation policy

    D. Data sovereignty regulation

  • Question 217:

    A systems administrator receives the following alert from a file integrity monitoring tool:

    The hash of the cmd.exe file has changed.

    The systems administrator checks the OS logs and notices that no patches were applied in the last two months. Which of the following most likely occurred?

    A. The end user changed the file permissions.

    B. A cryptographic collision was detected.

    C. A snapshot of the file system was taken.

    D. A rootkit was deployed.

  • Question 218:

    An analyst is concerned about data leaks and wants to restrict access to internet services to authorized users only. The analyst also wants to control the actions each user can perform on each service. Which of the following would be the best technology for the analyst to consider Implementing?

    A. DLP

    B. VPC

    C. CASB

    D. Content filtering

  • Question 219:

    A user's login credentials were recently compromised. During the investigation, the security analyst determined the user input credentials into a pop-up window when prompted to confirm the username and password. However, the trusted website does not use a pop-up for entering user credentials. Which of the following attacks occurred?

    A. Cross-site scripting

    B. SQL injection

    C. DNS poisoning

    D. Certificate forgery

  • Question 220:

    A systems administrator set up an automated process that checks for vulnerabilities across the entire environment every morning. Which of the following activities is the systems administrator conducting?

    A. Scanning

    B. Alerting

    C. Reporting

    D. Archiving

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-601 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.