A user, who is waiting for a flight at an airport, logs in to the airline website using the public Wi-Fi, ignores a security warning and purchases an upgraded seat. When the flight lands, the user finds unauthorized credit card charges.
Which of the following attacks most likely occurred?
A. Replay attackAn organization recently started hosting a new service that customers access through a web portal. A security engineer needs to add to the existing security devices a new solution to protect this new service.
Which of the following is the engineer most likely to deploy?
A. Layer 4 firewallAn organization wants to deploy software in a container environment to increase security.
Which of the following would limit the organization's ability to achieve this goal?
A. Regulatory complianceAn organization needs to monitor its users' activities to prevent insider threats.
Which of the following solutions would help the organization achieve this goal?
A. Behavioral analyticsA systems administrator uses deception techniques to help detect and study attacks within a network. The administrator deploys a document filled with fake passwords and customer payment information.
Which of the following techniques is the administrator using?
A. HoneytokenA security administrator observed the following in a web server log while investigating an incident:
"GET ../../../../etc/passwd"
Which of the following attacks did the security administrator most likely see?
A. Privilege escalationA threat actor was able to use a username and password to log in to a stolen company mobile device.
Which of the following provides the best solution to increase mobile data security on all employees' company mobile devices?
A. Application managementAccording to various privacy rules and regulations, users have the power to request that all data pertaining to them is deleted. This is known as:
A. Right to be forgottenA U.S.-based cloud-hosting provider wants to expand its data centers to new international locations.
Which of the following should the hosting provider consider first?
A. Local data protection regulationsAn organization purchased a critical business application containing sensitive data. The organization would like to ensure that the application is not exploited by common data exfiltration attacks.
Which of the following approaches would best help to fulfill this requirement?
A. URL scanningNowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.