SY0-701 Exam Details

  • Exam Code
    :SY0-701
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1016 Q&As
  • Last Updated
    :Jul 14, 2026

CompTIA SY0-701 Online Questions & Answers

  • Question 311:

    The management team notices that new accounts that are set up manually do not always have correct access or permissions.

    Which of the following automation techniques should a systems administrator use to streamline account creation?

    A. Guard rail script
    B. Ticketing workflow
    C. Escalation script
    D. User provisioning script

  • Question 312:

    The number of tickets the help desk has been receiving has increased recently due to numerous false-positive phishing reports.

    Which of the following would be best to help to reduce the false positives?

    A. Performing more phishing simulation campaigns
    B. Improving security awareness training
    C. Hiring more help desk staff
    D. Implementing an incident reporting web page

  • Question 313:

    An engineer needs to find a solution that creates an added layer of security by preventing unauthorized access to internal company resources.

    Which of the following would be the best solution?

    A. RDP server
    B. Jump server
    C. Proxy server
    D. Hypervisor

  • Question 314:

    A security analyst attempts to start a company's database server. When the server starts, the analyst receives an error message indicating the database server did not pass authentication. After reviewing and testing the system, the analyst receives confirmation that the server has been compromised and that attackers have redirected all outgoing database traffic to a server under their control.

    Which of the following MITRE ATT&CK techniques did the attacker most likely use to redirect database traffic?

    A. Browser extension
    B. Process injection
    C. Valid accounts
    D. Escape to host

  • Question 315:

    A Chief Information Security Officer (CISO) wants to:

    1. Prevent employees from downloading malicious content.

    2. Establish controls based on departments and users.

    3. Map internet access for business applications to specific service accounts.

    4. Restrict content based on categorization.

    Which of the following should the CSO implement?

    A. Web application rewall
    B. Secure DNS server
    C. Jump server
    D. Next-generation rewall

  • Question 316:

    A systems administrator deployed a monitoring solution that does not require installation on the endpoints that the solution is monitoring.

    Which of the following is described in this scenario?

    A. Agentless solution
    B. Client-based soon
    C. Open port
    D. File-based solution

  • Question 317:

    Which of the following should a technician perform to verify the integrity of a file transferred from one device to another?

    A. Authentication
    B. Obfuscation
    C. Hashing
    D. Encryption

  • Question 318:

    An employee asks a security analyst to scan a suspicious email that contains a link to a file on a file-sharing site. The analyst determines that the file is safe after downloading and scanning the file with antivirus software. When the employee opens the file, their device is infected with ransomware.

    Which of the following steps should the analyst have taken?

    A. Review the file in a code editor.
    B. Monitor the file connections with netstat -ano.
    C. Execute the file in a sandbox.
    D. Retrieve the file hash and check with OSINT.

  • Question 319:

    After a security incident, a systems administrator asks the company to buy a NAC platform.

    Which of the following attack surfaces is the systems administrator trying to protect?

    A. Bluetooth
    B. Wired
    C. NFC
    D. SCADA

  • Question 320:

    Several users have opened tickets with the help desk. The help desk has reassigned the tickets to a secunty analyst for further review.

    The security analyst reviews the following metrics:

    Which of the following is MOST likely the result of the security analyst's review?

    A. The ISP is dropping outbound connections
    B. The user of the Sales-PC fell for a phishing attack
    C. Corporate PCs have been turned into a botnet
    D. An on-path attack is taking place between PCs and the router

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.