SY0-701 Exam Details

  • Exam Code
    :SY0-701
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :983 Q&As
  • Last Updated
    :May 26, 2026

CompTIA SY0-701 Online Questions & Answers

  • Question 541:

    Which of the following teams combines both offensive and defensive testing techniques to protect an organization's critical systems?

    A. Red
    B. Blue
    C. Purple
    D. Yellow

  • Question 542:

    Which of the following actions best addresses a vulnerability found on a company's web server?

    A. Patching
    B. Segmentation
    C. Decommissioning
    D. Monitoring

  • Question 543:

    An organization is struggling with scaling issues on its VPN concentrator and internet circuit due to remote work. The organization is looking for a software solution that will allow it to reduce traffic on the VPN and internet circuit, while still providing encrypted tunnel access to the data center and monitoring of remote employee internet traffic.

    Which of the following will help achieve these objectives?

    A. Deploying a SASE solution to remote employees
    B. Building a load-balanced VPN solution with redundant internet
    C. Purchasing a low-cost SD-WAN solution for VPN traffic
    D. Using a cloud provider to create additional VPN concentrators

  • Question 544:

    Which of the following is a use of CVSS?

    A. To determine the cost associated with patching systems
    B. To identify unused ports and services that should be closed
    C. To analyze code for defects that could be exploited
    D. To prioritize the remediation of vulnerabilities

  • Question 545:

    A security analyst has determined that a security breach would have a financial impact of $15,000 and is expected to occur twice within a three-year period.

    Which of the following is the ALE for this risk?

    A. $7,500
    B. $10,000
    C. $15,000
    D. $30,000

  • Question 546:

    An organization experienced a security breach that allowed an attacker to send fraudulent wire transfers from a hardened PC exclusively to the attacker's bank through remote connections. A security analyst is creating a timeline of events and has found a different PC on the network containing malware. Upon reviewing the command history, the analyst finds the following:

    PS>.

    \mimikatz.exe "sekurlsa::pth /user:localadmin /domain:corp-domain.com/ntlm:B4B9B02E1F29A3CF193EAB28C8D617D3F327 Which of the following best describes how the attacker gained access to the hardened PC?

    A. The attacker created fileless malware that was hosted by the banking platform.
    B. The attacker performed a pass-the-hash attack using a shared support account.
    C. The attacker utilized living-off-the-land binaries to evade endpoint detection and response software.
    D. The attacker socially engineered the accountant into performing bad transfers.

  • Question 547:

    An unexpected and out-of-character email message from a Chief Executive Officer's corporate account asked an employee to provide financial information and to change the recipient's contact number.

    Which of the following attack vectors is most likely being used?

    A. Business email compromise
    B. Phishing
    C. Brand impersonation
    D. Pretexting

  • Question 548:

    Which of the following consequences would a retail chain most likely face from customers in the event the retailer is non-compliant with PCI DSS?

    A. Contractual impacts
    B. Sanctions
    C. Fines
    D. Reputational damage

  • Question 549:

    A company wants to implement MFA.

    Which of the following enables the additional factor while using a smart card?

    A. PIN
    B. Hardware token
    C. User ID
    D. SMS

  • Question 550:

    An employee receives a text message from an unknown number claiming to be the company's Chief Executive Officer and asking the employee to purchase several gift cards.

    Which of the following types of attacks does this describe?

    A. Vishing
    B. Smishing
    C. Pretexting
    D. Phishing

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.