SY0-701 Exam Details

  • Exam Code
    :SY0-701
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :983 Q&As
  • Last Updated
    :May 26, 2026

CompTIA SY0-701 Online Questions & Answers

  • Question 161:

    A security analyst receives alerts about an internal system sending a large amount of unusual DNS queries to systems on the internet over short periods of time during non-business hours.

    Which of the following is most likely occurring?

    A. A worm is propagating across the network.
    B. Data is being exfiltrated.
    C. A logic bomb is deleting data.
    D. Ransomware is encrypting files.

  • Question 162:

    Several users have opened tickets with the help desk. The help desk has reassigned the tickets to a secunty analyst for further review.

    The security analyst reviews the following metrics:

    Which of the following is MOST likely the result of the security analyst's review?

    A. The ISP is dropping outbound connections
    B. The user of the Sales-PC fell for a phishing attack
    C. Corporate PCs have been turned into a botnet
    D. An on-path attack is taking place between PCs and the router

  • Question 163:

    Which of the following should a security team do first before a new web server goes live?

    A. Harden the virtual host.
    B. Create WAF rules.
    C. Enable network intrusion detection.
    D. Apply patch management.

  • Question 164:

    A technician is opening ports on a firewall for a new system being deployed and supported by a SaaS provider.

    Which of the following is a risk in the new system?

    A. Default credentials
    B. Non-segmented network
    C. Supply chain vendor
    D. Vulnerable software

  • Question 165:

    Which of the following penetration testing teams is focused only on trying to compromise an organization using an attacker's tactics?

    A. White
    B. Red
    C. Purple
    D. Blue

  • Question 166:

    An organization has too many variations of a single operating system and needs to standardize the arrangement prior to pushing the system image to users.

    Which of the following should the organization implement first?

    A. Standard naming convention
    B. Mashing
    C. Network diagrams
    D. Baseline configuration

  • Question 167:

    A systems administrator receives an alert that a company's internal file server is very slow and is only working intermittently. The systems administrator reviews the server management software and finds the following information about the server:

    Which of the following indicators most likely triggered this alert?

    A. Concurrent session usage
    B. Network saturation
    C. Account lockout
    D. Resource consumption

  • Question 168:

    The management team wants to assess the cybersecurity team's readiness to respond to a threat scenario.

    Which of the following will adequately assess and formalize a response within a short time?

    A. Send a message to all IT managers and request formal action plans.
    B. Create a bug bounty program and assess the findings.
    C. Execute a tabletop exercise and document the performance results.
    D. Hire an external consultant to independently assess the cybersecurity processes.

  • Question 169:

    A security analyst receives an alert from a web server that contains the following logs:

    GET /image?filename=../../../etc/passwd Host: AcmeInc.web.net user-agent: python-requests/2.27.1

    GET /image?filename=../../..

    /etc/shadow Host: AcmeInc.web.net user-agent: python-requests/2.27.1 Which of the following attacks is being attempted?

    A. File injection
    B. Privilege escalation
    C. Directory traversal
    D. Cookie forgery

  • Question 170:

    An organization discovers that its cold site does not have enough storage and computers available.

    Which of the following was most likely the cause of this failure?

    A. Capacity planning
    B. Load balancing
    C. Backups
    D. Platform diversity

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.