CompTIA SY0-701 Online Practice
Questions and Exam Preparation
SY0-701 Exam Details
Exam Code
:SY0-701
Exam Name
:CompTIA Security+
Certification
:CompTIA Certifications
Vendor
:CompTIA
Total Questions
:1016 Q&As
Last Updated
:Jul 14, 2026
CompTIA SY0-701 Online Questions &
Answers
Question 441:
A security consultant needs secure, remote access to a client environment.
Which of the following should the security consultant most likely use to gain access?
A. EAP B. DHCP C. IPSec D. NAT
C. IPSec
Explanation
IPSec is a protocol suite that provides secure communication over IP networks. IPSec can be used to create virtual private networks (VPNs) that encrypt and authenticate the data exchanged between two or more parties. IPSec can also provide data integrity, confidentiality, replay protection, and access control. A security consultant can use IPSec to gain secure, remote access to a client environment by establishing a VPN tunnel with the client's network.
References:
CompTIA Security+ Study Guide: Exam SY0- 701, 9th Edition, Chapter 8: Secure Protocols and Services, page 385
Question 442:
An organization's internet-facing website was compromised when an attacker exploited a buffer overflow.
Which of the following should the organization deploy to best protect against similar attacks in the future?
A. NGFW B. WAF C. TLS D. SD-WAN
B. WAF
Explanation
A buffer overflow is a type of software vulnerability that occurs when an application writes more data to a memory buffer than it can hold, causing the excess data to overwrite adjacent memory locations. This can lead to unexpected behavior, such as crashes, errors, or code execution. A buffer overflow can be exploited by an attacker to inject malicious code or commands into the application, which can compromise the security and functionality of the system. An organization's internet-facing website was compromised when an attacker exploited a buffer overflow. To best protect against similar attacks in the future, the organization should deploy a web application firewall (WAF). A WAF is a type of firewall that monitors and filters the traffic between a web application and the internet. A WAF can detect and block common web attacks, such as buffer overflows, SQL injections, cross-site scripting (XSS), and more. A WAF can also enforce security policies and rules, such as input validation, output encoding, and encryption. A WAF can provide a layer of protection for the web application, preventing attackers from exploiting its vulnerabilities and compromising its data.
References:
Buffer Overflows -CompTIA Security+ SY0-701 ?2.3, Web Application Firewalls -CompTIA Security+ SY0-701 ?2.4, [CompTIA Security+ Study Guide with over 500 Practice Test Questions: Exam SY0-701, 9th Edition]
Question 443:
An analyst identifies that multiple users have the same passwords, but the hashes appear to be completely different.
Which of the following most likely explains this issue?
A. Data masking B. Salting C. Key escrow D. Tokenization
B. Salting
Question 444:
A contractor is required to visually inspect the motherboards of all new servers that are purchased to determine whether the servers were tampered with.
Which of the following risks is the contractor attempting to mitigate?
A. Embedded rootkit B. Supply chain C. Firmware failure D. RFID keylogger
B. Supply chain
Explanation
By visually inspecting the motherboards of new servers, the contractor is mitigating supply chain risks, which include the possibility of tampering or malicious components being introduced during manufacturing or transit. Such inspections help ensure the integrity of hardware and reduce the likelihood of compromised devices entering the organization.
Question 445:
A Chief Information Security Officer would like to conduct frequent, detailed reviews of systems and procedures to track compliance objectives.
Which of the following will be the best method to achieve this objective?
A. Third-party attestation B. Penetration testing C. Internal auditing D. Vulnerability scans
C. Internal auditing
Question 446:
Two organizations plan to collaborate on the evaluation of new SIEM solutions for their respective companies. A combined effort from both organizations' SOC teams would speed up the effort.
Which of the following can be written to document this agreement?
A. MOU B. ISA C. SLA D. NDA
A. MOU
Explanation
A document that regulates security-relevant aspects of an intended connection between an agency and an external system. It regulates the security interface between any two systems operating under two different distinct authorities. It includes a variety of descriptive, technical, procedural, and planning information. It is usually preceded by a formal MOA/MOU that defines high-level roles and responsibilities in management of a cross-domain connection.
Question 447:
A security analyst receives an alert that there was an attempt to download known malware.
Which of the following actions would allow the best chance to analyze the malware?
A. Review the IPS logs and determine which command-and-control IPs were blocked. B. Analyze application logs to see how the malware attempted to maintain persistence. C. Run vulnerability scans to check for systems and applications that are vulnerable to the malware. D. Obtain and execute the malware in a sandbox environment and perform packet captures.
D. Obtain and execute the malware in a sandbox environment and perform packet captures.
Question 448:
Prior to implementing a design change, the change must go through multiple steps to ensure that it does not cause any security issues.
Which of the following is most likely to be one of those steps?
A. Management review B. Load testing C. Maintenance notifications D. Procedure updates
A. Management review
Question 449:
Which of the following is the most important element when defining effective security governance?
A. Discovering and documenting external considerations B. Developing procedures for employee onboarding and offboarding C. Assigning roles and responsibilities for owners, controllers, and custodians D. Defining and monitoring change management procedures
C. Assigning roles and responsibilities for owners, controllers, and custodians
Question 450:
Employees sign an agreement that restricts specific activities when leaving the company. Violating the agreement can result in legal consequences.
Which of the following agreements does this best describe?
Nowadays, the certification exams become more and more important and required by more and more
enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare
for the exam in a short time with less efforts? How to get a ideal result and how to find the
most reliable resources? Here on Vcedump.com, you will find all the answers.
Vcedump.com provide not only CompTIA exam questions,
answers and explanations but also complete assistance on your exam preparation and certification
application. If you are confused on your SY0-701 exam preparations
and CompTIA certification application, do not hesitate to visit our
Vcedump.com to find your solutions here.