SY0-701 Exam Details

  • Exam Code
    :SY0-701
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :983 Q&As
  • Last Updated
    :May 26, 2026

CompTIA SY0-701 Online Questions & Answers

  • Question 841:

    A company's Chief Information Security Officer (CISO) wants to enhance the capabilities of the incident response team. The CISO directs the incident response team to deploy a tool that rapidly analyzes host and network data from potentially compromised systems and forwards the data for further review.

    Which of the following tools should the incident response team deploy?

    A. NAC
    B. IPS
    C. SIEM
    D. EDR

  • Question 842:

    A user downloaded software from an online forum. After the user installed the software, the security team observed external network traffic connecting to the user's computer on an uncommon port.

    Which of the following is the most likely explanation of this unauthorized connection?

    A. The software had a hidden keylogger.
    B. The software was ransomware.
    C. The user's computer had a fileless virus.
    D. The software contained a backdoor.

  • Question 843:

    Which of the following is a type of vulnerability that involves inserting scripts into web-based applications in order to take control of the client's web browser?

    A. SQL injection
    B. Cross-site scripting
    C. Zero-day exploit
    D. On-path attack

  • Question 844:

    A penetration testing report indicated that an organization should implement controls related to database input validation.

    Which of the following best identifies the type of vulnerability that was likely discovered during the test?

    A. XSS
    B. Command injection
    C. Buffer overflow
    D. SQLi

  • Question 845:

    An audit reveals that cardholder database logs are exposing account numbers inappropriately.

    Which of the following mechanisms would help limit the impact of this error?

    A. Segmentation
    B. Hashing
    C. Journaling
    D. Masking

  • Question 846:

    Which of the following is the best way to consistently determine on a daily basis whether security settings on servers have been modified?

    A. Automation
    B. Compliance checklist
    C. Attestation
    D. Manual audit

  • Question 847:

    Which of the following explains how a supply chain service provider could introduce a security vulnerability into an organization?

    A. Delaying hardware shipments needed for system upgrades
    B. Outsourcing customer service operations to a foreign call center
    C. Failing to encrypt data stored on the organization's internal database
    D. Having privileged access to client systems and becoming a target for attackers

  • Question 848:

    Which of the following data states applies to data that is being actively processed by a database server?

    A. In use
    B. At rest
    C. In transit
    D. Being hashed

  • Question 849:

    Which of the following can automate vulnerability management?

    A. CVE
    B. SCAP
    C. OSINT
    D. CVSS

  • Question 850:

    Which of the following should an organization use to protect its environment from external attacks conducted by an unauthorized hacker?

    A. ACL
    B. IDS
    C. HIDS
    D. NIPS

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.