Exit demo RC0-501 CompTIA Security+ Recertification Exam PDF format · free preview

CompTIA RC0-501 - Questions & Answers

Free preview · every answer includes a full explanation

Product page: https://prepkeys.com/rc0-501.html

Question 1
Single choice

A new intern in the purchasing department requires read access to shared documents. Permissions are normally controlled through a group called "Purchasing", however, the purchasing group permissions allow write access.

Which of the following would be the BEST course of action?

A.

Modify all the shared files with read only permissions for the intern.

B.

Create a new group that has only read permissions for the files.

C.

Remove all permissions for the shared files.

D.

Add the intern to the "Purchasing" group.

Question 2
Single choice

A business has recently deployed laptops to all sales employees. The laptops will be used primarily from home offices and while traveling, and a high amount of wireless mobile use is expected.
To protect the laptops while connected to untrusted wireless networks, which of the following would be the BEST method for reducing the risk of having the laptops compromised?

A.

MAC filtering

B.

Virtualization

C.

OS hardening

D.

Application white-listing

Question 3
Single choice

Which of the fallowing security controls does an iris scanner provide?

A.

Logical

B.

Administrative

C.

Corrective

D.

Physical

E.

Detective

F.

Deterrent

Question 4
Single choice

During a data breach cleanup, it is discovered that not all of the sites involved have the necessary data wiping tools.
The necessary tools are quickly distributed to the required technicians, but when should this problem BEST be revisited?

A.

Reporting

B.

Preparation

C.

Mitigation

D.

Lessons Learned

Question 5
Single choice

Joe, a technician, is working remotely with his company provided laptop at the coffee shop near his home.
Joe is concerned that another patron of the coffee shop may be trying to access his laptop.

Which of the following is an appropriate control to use to prevent the other patron from accessing Joe's laptop directly?

A.

full-disk encryption

B.

Host-based firewall

C.

Current antivirus definitions

D.

Latest OS updates

Question 6
Single choice

An attacker uses a network sniffer to capture the packets of a transaction that adds $20 to a gift card. The attacker then user a function of the sniffer to push those packets back onto the network again, adding another $20 to the gift card. This can be done many times.

Which of the following describes this type of attack?

A.

Integer overflow attack

B.

Smurf attack

C.

Replay attack

D.

Buffer overflow attack

E.

Cross-site scripting attack

Question 7
Single choice

An organization is moving its human resources system to a cloud services provider. The company plans to continue using internal usernames and passwords with the service provider, but the security manager does not want the service provider to have a company of the passwords.

Which of the following options meets all of these requirements?

A.

Two-factor authentication

B.

Account and password synchronization

C.

Smartcards with PINS

D.

Federated authentication

Question 8
Single choice

The data backup window has expanded into the morning hours and has begun to affect production users.
The main bottleneck in the process is the time it takes to replicate the backups to separate severs at the offsite data center.

Which of the following uses of deduplication could be implemented to reduce the backup window?

A.

Implement deduplication at the network level between the two locations

B.

Implement deduplication on the storage array to reduce the amount of drive space needed

C.

Implement deduplication on the server storage to reduce the data backed up

D.

Implement deduplication on both the local and remote servers

Question 9
Single choice

A penetration testing is preparing for a client engagement in which the tester must provide data that proves and validates the scanning tools' results.

Which of the following is the best method for collecting this information?

A.

Set up the scanning system's firewall to permit and log all outbound connections

B.

Use a protocol analyzer to log all pertinent network traffic

C.

Configure network flow data logging on all scanning system

D.

Enable debug level logging on the scanning system and all scanning tools used.

Question 10
Single choice

Which of the following best describes the initial processing phase used in mobile device forensics?

A.

The phone should be powered down and the battery removed to preserve the state of data on any internal or removable storage utilized by the mobile device

B.

The removable data storage cards should be processed first to prevent data alteration when examining the mobile device

C.

The mobile device should be examined first, then removable storage and lastly the phone without removable storage should be examined again

D.

The phone and storage cards should be examined as a complete unit after examining the removable storage cards separately.

Showing 10 of 349 questions · Unlock the full set