SY0-701 Exam Details

  • Exam Code
    :SY0-701
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :983 Q&As
  • Last Updated
    :May 26, 2026

CompTIA SY0-701 Online Questions & Answers

  • Question 171:

    Which of the following techniques would attract the attention of a malicious attacker in an insider threat scenario?

    A. Creating a false text file in /docs/salaries
    B. Setting weak passwords in /etc/shadow
    C. Scheduling vulnerable jobs in /etc/crontab
    D. Adding a fake account to /etc/passwd

  • Question 172:

    An analyst discovers a suspicious item in the SQL Server logs.

    Which of the following could be evidence of an attempted SQL injection?

    A. cat /etc/shadow
    B. dig 25.36.99.11
    C. cd .. / .. / .. /
    D. UserId = 10 OR 1=1;

  • Question 173:

    An analyst identifies that multiple users have the same passwords, but the hashes appear to be completely different.

    Which of the following most likely explains this issue?

    A. Data masking
    B. Salting
    C. Key escrow
    D. Tokenization

  • Question 174:

    A security manager needs an automated solution that will take immediate action to protect an organization against inbound malicious traffic.

    Which of the following is the best solution?

    A. UEM
    B. IPS
    C. WAF
    D. VPN

  • Question 175:

    A Chief Information Security Officer (CISO) wants to:

    1. Prevent employees from downloading malicious content.

    2. Establish controls based on departments and users.

    3. Map internet access for business applications to specific service accounts.

    4. Restrict content based on categorization.

    Which of the following should the CSO implement?

    A. Web application rewall
    B. Secure DNS server
    C. Jump server
    D. Next-generation rewall

  • Question 176:

    A company is in the process of cutting jobs to manage costs. The Chief Information Security Officer is concerned about the increased risk of an insider threat.

    Which of the following would most likely help the security awareness team address this potential threat?

    A. Immediately disable the accounts of staff who are likely to be terminated.
    B. Train supervisors to identify and manage disgruntled employees.
    C. Configure DLP to monitor staff who will be terminated.
    D. Raise awareness for business leaders on social engineering techniques.

  • Question 177:

    A security engineer at a large company needs to enhance IAM to ensure that employees can only access corporate systems during their shifts.

    Which of the following access controls should the security engineer implement?

    A. Role-based
    B. Time-of-day restrictions
    C. Least privilege
    D. Biometric authentication

  • Question 178:

    Which of the following physical controls can be used to both detect and deter? (Choose two.)

    A. Lighting
    B. Fencing
    C. Signage
    D. Sensor
    E. Bollard
    F. Lock

  • Question 179:

    The application development teams have been asked to answer the following questions:

    1. Does this application receive patches from an external source?

    2. Does this application contain open-source code?

    3. Is this application accessible by external users?

    4. Does this application meet the corporate password standard?

    Which of the following are these questions part of?

    A. Risk control self-assessment
    B. Risk management strategy
    C. Risk acceptance
    D. Risk matrix

  • Question 180:

    Executives at a company are concerned about employees accessing systems and information about sensitive company projects unrelated to the employees' normal job duties.

    Which of the following enterprise security capabilities will the security team most likely deploy to detect that activity?

    A. UBA
    B. EDR
    C. NAC
    D. DLP

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.