Exam Details

  • Exam Code
    :SY0-601
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1334 Q&As
  • Last Updated
    :May 09, 2025

CompTIA CompTIA Certifications SY0-601 Questions & Answers

  • Question 981:

    Which of the following will MOST likely cause machine-learning and AI-enabled systems to operate with unintended consequences?

    A. Stored procedures

    B. Buffer overflows

    C. Data bias

    D. Code reuse

  • Question 982:

    An organization plans to transition the intrusion detection and prevention techniques on a critical subnet to an anomaly-based system. Which of the following does the organization need to determine for this to be successful?

    A. The baseline

    B. The endpoint configurations

    C. The adversary behavior profiles

    D. The IPS signatures

  • Question 983:

    A network administrator at a large organization is reviewing methods to improve the security of the wired LAN. Any security improvement must be centrally managed and allow corporate-owned devices to have access to the intranet but limit others to Internet access only. Which of the following should the administrator recommend?

    A. 802.1X utilizing the current PKI infrastructure

    B. SSO to authenticate corporate users

    C. MAC address filtering with ACLs on the router

    D. PAM for users account management

  • Question 984:

    A security operations analyst is using the company's SIEM solution to correlate alerts. Which of the following stages of the incident response process is this an example of?

    A. Eradication

    B. Recovery

    C. Identification

    D. Preparation

  • Question 985:

    A nationwide company is experiencing unauthorized logins at all hours of the day. The logins appear to originate from countries in which the company has no employees. Which of the following controls should the company consider using as part of its IAM strategy? (Select TWO).

    A. A complex password policy

    B. Geolocation

    C. An impossible travel policy

    D. Self-service password reset

    E. Geofencing

    F. Time-based logins

  • Question 986:

    A customer called a company's security team to report that all invoices the customer has received over the last five days from the company appear to have fraudulent banking details. An investigation into the matter reveals the following

    1.

    The manager of the accounts payable department is using the same password across multiple external websites and the corporate account.

    2.

    One of the websites the manager used recently experienced a data breach

    3.

    The manager's corporate email account was successfully accessed in the last five days by an IP address located in a foreign country

    Which of the following attacks has MOST likely been used to compromise the manager's corporate account?

    A. Remote access Trojan

    B. Brute-force

    C. Dictionary

    D. Credential stuffing

    E. Password spraying

  • Question 987:

    A web server administrator has redundant servers and needs to ensure failover to the secondary server when the primary server goes down. Which of the following should the administrator implement to avoid disruption?

    A. NIC teaming

    B. High availability

    C. Dual power supply

    D. laaS

  • Question 988:

    To further secure a company's email system, an administrator is adding public keys to DNS records in the company's domain. Which of the following is being used?

    A. PFS

    B. SPF

    C. DMARC

    D. DNSSEC

  • Question 989:

    A company has been experiencing very brief power outages from its utility company over the last few months. These outages only last for one second each time. The utility company is aware of the issue and Is working to replace a faulty transformer. Which of the following BEST describes what the company should purchase to ensure its critical servers and network devices stay online?

    A. Dual power supplies

    B. A UPS

    C. A generator

    D. A PDU

  • Question 990:

    An organization recently recovered from a data breach. During the root cause analysis, the organization determined the source of the breach to be a personal cell phone that had been reported lost. Which of the following solutions should the organization implement to reduce the likelihood of future data breaches?

    A. MDM

    B. MAM

    C. VDI

    D. DLP

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-601 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.