SY0-701 Exam Details

  • Exam Code
    :SY0-701
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :983 Q&As
  • Last Updated
    :May 26, 2026

CompTIA SY0-701 Online Questions & Answers

  • Question 831:

    An analyst wants to move data from production to the UAT server to test the latest release.

    Which of the following strategies should the analyst use to protect sensitive data from being viewed by the testing team?

    A. Data masking
    B. Data tokenization
    C. Data obfuscation
    D. Data encryption

  • Question 832:

    SIMULATION

    A recent black-box penetration test of http://example.com discovered that external

    website vulnerabilities exist, such as directory traversals, cross-site scripting, cross-site forgery, and insecure protocols.

    You are tasked with reducing the attack space and enabling secure protocols.

    INSTRUCTIONS

    Part 1

    Use the drop-down menus to select the appropriate technologies for each location to implement a secure and resilient web architecture. Not all technologies will be used, and technologies may be used multiple times.

    Part 2

    Use the drop-down menus to select the appropriate command snippets from the drop-down menus. Each command section must be filled.

    A. Check the anser below.
    B. PlaceHolder
    C. PlaceHolder
    D. PlaceHolder

  • Question 833:

    Which of the following actions must an organization take to comply with a person's request for the right to be forgotten?

    A. Purge all personally identifiable attributes.
    B. Encrypt all of the data.
    C. Remove all of the person's data.
    D. Obfuscate all of the person's data.

  • Question 834:

    A recent penetration test identified that an attacker could flood the MAC address table of network switches.

    Which of the following would best mitigate this type of attack?

    A. Load balancer
    B. Port security
    C. IPS
    D. NGFW

  • Question 835:

    A security analyst attempts to start a company's database server. When the server starts, the analyst receives an error message indicating the database server did not pass authentication. After reviewing and testing the system, the analyst receives confirmation that the server has been compromised and that attackers have redirected all outgoing database traffic to a server under their control.

    Which of the following MITRE ATT&CK techniques did the attacker most likely use to redirect database traffic?

    A. Browser extension
    B. Process injection
    C. Valid accounts
    D. Escape to host

  • Question 836:

    Which of the following would best ensure a controlled version release of a new software application?

    A. Business continuity planning
    B. Quantified risk analysis
    C. Static code analysis
    D. Change management procedures

  • Question 837:

    Which of the following is best to use when determining the severity of a vulnerability?

    A. CVE
    B. OSINT
    C. SOAR
    D. CVSS

  • Question 838:

    A store is setting up wireless access for employees. Management wants to limit the number of access points while ensuring full coverage.

    Which tool will help determine how many access points are needed?

    A. Signal locator
    B. WPA3
    C. Heat map
    D. Site survey

  • Question 839:

    Which of the following is an example of a certificate that is generated by an internal source?

    A. Digital signature
    B. Asymmetric key
    C. Self-signed
    D. Symmetric key

  • Question 840:

    Which of the following best distinguishes hacktivists from insider threats?

    A. Hacktivists often act based on ideological or political beliefs rather than organizational access.
    B. Hacktivists are generally employed by the target organization at the time of attack.
    C. Hacktivists often target organizations without prior access or internal affiliation.
    D. Hacktivists are primarily motivated by personal conflicts or employment-related dissatisfaction.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.