SY0-701 Exam Details

  • Exam Code
    :SY0-701
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1016 Q&As
  • Last Updated
    :Jul 14, 2026

CompTIA SY0-701 Online Questions & Answers

  • Question 361:

    In which of the following scenarios is tokenization the best privacy technique to use?

    A. Providing pseudo-anonymization for social media user accounts
    B. Serving as a second factor for authentication requests
    C. Enabling established customers to safely store credit card Information
    D. Masking personal information inside databases by segmenting data

  • Question 362:

    Which of the following best describes a use case for a DNS sinkhole?

    A. Attackers can see a DNS sinkhole as a highly valuable resource to identify a company's domain structure.
    B. A DNS sinkhole can be used to draw employees away from known-good websites to malicious ones owned by the attacker.
    C. A DNS sinkhole can be used to capture traffic to known-malicious domains used by attackers.
    D. A DNS sinkhole can be set up to attract potential attackers away from a company's network resources.

  • Question 363:

    Which of the following would be used to detect an employee who is emailing a customer list to a personal account before leaving the company?

    A. DLP
    B. FIM
    C. IDS
    D. EDR

  • Question 364:

    Which of the following uses proprietary controls and is designed to function in harsh environments over many years with limited remote access management?

    A. ICS
    B. Microservers
    C. Containers
    D. IoT

  • Question 365:

    A security engineer is working to address the growing risks that shadow IT services are introducing to the organization. The organization has taken a cloud-first approach end does not have an on-premises IT infrastructure.

    Which of the following would best secure the organization?

    A. Upgrading to a next-generation firewall
    B. Deploying an appropriate in-line CASB solution
    C. Conducting user training on software policies
    D. Configuring double key encryption in SaaS platforms

  • Question 366:

    A security administrator needs to create firewall rules for the following protocols: RTP, SIP, H.323. and SRTP.

    Which of the following does this rule set support?

    A. RTOS
    B. VoIP
    C. SoC
    D. HVAC

  • Question 367:

    Which of the following are the first steps an analyst should perform when developing a heat map? (Choose two.)

    A. Methodically walk around the office noting Wi-Fi signal strength.
    B. Log in to each access point and check the settings.
    C. Create or obtain a layout of the office.
    D. Measure cable lengths between access points.
    E. Review access logs to determine the most active devices.
    F. Remove possible impediments to radio transmissions.

  • Question 368:

    A security analyst reviews web server logs and sees the following entries:

    16.22.48.102 -- 26/April/2023 22:00:04.33 GET "http://www.databaseInfo.com/index.html/*"

    16.22.48.102 -- 26/April/2023 22:00:07.23 GET "http://www.databaseInfo.com/index.html/../" 404

    16.22.48.102 -- 26/April/2023 22:01:16.03 GET "http://www.databaseInfo.com/index.html/../images" 404

    16.22.48.102 -- 26/April/2023 22:03:10.25 GET "http://www.databaseInfo.com/index.html/../passwords" 404

    16.22.48.102 -- 26/April/2023 22:05:11.22 GET

    "http://www.databaseInfo.com/index.html/..

    /storedSQLqueries" 404 Which of the following attacks is most likely being attempted?

    A. Denial of service
    B. Password spraying
    C. SQL injection
    D. Directory traversal

  • Question 369:

    A network administrator wants to ensure that network traffic is highly secure while in transit.

    Which of the following actions best describes the actions the network administrator should take?

    A. Ensure that NAC is enforced on all network segments, and confirm that firewalls have updated policies to block unauthorized traffic.
    B. Ensure only TLS and other encrypted protocols are selected for use on the network, and only permit authorized traffic via secure protocols.
    C. Configure the perimeter IPS to block inbound HTTPS directory traversal traffic, and verify that signatures are updated on a daily basis.
    D. Ensure the EDR software monitors for unauthorized applications that could be used by threat actors, and configure alerts for the security team.

  • Question 370:

    A small business uses kiosks on the sales floor to display product information for customers. A security team discovers the kiosks use end-of-life operating systems.

    Which of the following is the security team most likely to document as a security implication of the current architecture?

    A. Patch availability
    B. Product software compatibility
    C. Ease of recovery
    D. Cost of replacement

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.