SY0-701 Exam Details

  • Exam Code
    :SY0-701
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :983 Q&As
  • Last Updated
    :May 26, 2026

CompTIA SY0-701 Online Questions & Answers

  • Question 441:

    Which of the following security controls is used to isolate externally accessible resources from the internal corporate network in order to reduce the attack surface?

    A. Faraday cages
    B. Demilitarized zone (DMZ)
    C. Vaulting
    D. Proximity readers

  • Question 442:

    Which of the following is the best reason to perform a tabletop exercise?

    A. To address audit findings
    B. To collect remediation response times
    C. To update the IRP
    D. To calculate the ROI

  • Question 443:

    Which of the following describes a security alerting and monitoring tool that collects system, application, and network logs from multiple sources in a centralized system?

    A. SIEM
    B. DLP
    C. IDS
    D. SNMP

  • Question 444:

    As part of new compliance audit requirements, multiple servers need to be segmented on different networks and should be reachable only from authorized internal systems.

    Which of the following would meet the requirements?

    A. Configure firewall rules to block external access to Internal resources.
    B. Set up a WAP to allow internal access from public networks.
    C. Implement a new IPSec tunnel from internal resources.
    D. Deploy an Internal Jump server to access resources.

  • Question 445:

    An organization is leveraging a VPN between its headquarters and a branch location.

    Which of the following is the VPN protecting?

    A. Data in use
    B. Data in transit
    C. Geographic restrictions
    D. Data sovereignty

  • Question 446:

    An administrator needs to protect user passwords and has been advised to hash the passwords.

    Which of the following BEST describes what the administrator is being advised to do?

    A. Perform a mathematical operation on the passwords that will convert them into unique strings.
    B. Add extra data to the passwords so their length is increased, making them harder to brute force.
    C. Store all passwords in the system in a rainbow table that has a centralized location.
    D. Enforce the use of one-time passwords that are changed for every login session.

  • Question 447:

    Which of the following can be used to identify potential attacker activities without affecting production servers?

    A. Honey pot
    B. Video surveillance
    C. Zero Trust
    D. Geofencing

  • Question 448:

    Which of the following steps should be taken before mitigating a vulnerability in a production server?

    A. Escalate the issue to the SDLC team.
    B. Use the IR plan to evaluate the changes.
    C. Perform a risk assessment to classify the vulnerability.
    D. Refer to the change management policy.

  • Question 449:

    A network manager wants to protect the company's VPN by implementing multifactor authentication that uses:

    1. Something you know

    2. Something you have

    3. Something you are

    Which of the following would accomplish the manager's goal?

    A. Domain name, PKI, GeolP lookup
    B. VPN IP address, company ID, facial structure
    C. Password, authentication token, thumbprint
    D. Company URL, TLS certificate, home address

  • Question 450:

    Which of the following is a possible factor for MFA?

    A. Something you exhibit
    B. Something you have
    C. Somewhere you are
    D. Someone you know

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.