SY0-701 Exam Details

  • Exam Code
    :SY0-701
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :983 Q&As
  • Last Updated
    :May 26, 2026

CompTIA SY0-701 Online Questions & Answers

  • Question 511:

    A security administrator needs to create firewall rules for the following protocols: RTP, SIP, H.323. and SRTP.

    Which of the following does this rule set support?

    A. RTOS
    B. VoIP
    C. SoC
    D. HVAC

  • Question 512:

    A security analyst is investigating an application server and discovers that software on the server is behaving abnormally. The software normally runs batch jobs locally and does not generate traffic, but the process is now generating outbound traffic over random high ports.

    Which of the following vulnerabilities has likely been exploited in this software?

    A. Memory injection
    B. Race condition
    C. Side loading
    D. SQL injection

  • Question 513:

    Which of the following can best protect against an employee inadvertently installing malware on a company system?

    A. Host-based firewall
    B. System isolation
    C. Least privilege
    D. Application allow list

  • Question 514:

    A security administrator identifies an application that is storing data using MD5.

    Which of the following best identifies the vulnerability likely present in the application?

    A. Cryptographic
    B. Malicious update
    C. Zero day
    D. Side loading

  • Question 515:

    A Chief Information Officer wants to ensure that network devices cannot connect to the public internet and the local network to directly perform firmware updates. The IT team must manually perform the update process by using a portable device.

    Which of the following architecture types best fits this description?

    A. Microservices
    B. Air-gapped
    C. Software-defined networking
    D. Serverless

  • Question 516:

    A security analyst at an organization observed several user logins from outside the organization's network. The analyst determined that these logins were not performed by individuals within the organization.

    Which of the following recommendations would reduce the likelihood of future attacks? (Choose two.)

    A. Disciplinary actions for users
    B. Conditional access policies
    C. More regular account audits
    D. Implementation of additional authentication factors
    E. Enforcement of content filtering policies
    F. A review of user account permissions

  • Question 517:

    A company wants to protect a specialized legacy platform that controls the physical flow of gas inside of pipes.

    Which of the following environments does the company need to secure to best achieve this goal?

    A. IaaS
    B. SCADA
    C. SDN
    D. IoT

  • Question 518:

    Which of the following describes the reason root cause analysis should be conducted as part of incident response?

    A. To gather loCs for the investigation
    B. To discover which systems have been affected
    C. To eradicate any trace of malware on the network
    D. To prevent future incidents of the same nature

  • Question 519:

    After completing an annual external penetration test, a company receives the following guidance:

    Decommission two unused web servers currently exposed to the internet.

    Close 18 open and unused ports found on its existing production web servers.

    Remove company email addresses and contact information from public domain registration records.

    Which of the following does this represent?

    A. Attack surface reduction
    B. Vulnerability assessment
    C. Tabletop exercise
    D. Business impact analysis

  • Question 520:

    An employee clicked a link in an email from a payment website that asked the employee to update contact information. The employee entered the log-in information but received a "page not found" error message.

    Which of the following types of social engineering attacks occurred?

    A. Brand impersonation
    B. Pretexting
    C. Typosquatting
    D. Phishing

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.