Exit demo SY0-301 CompTIA Security+ PDF format · free preview

CompTIA SY0-301 - Questions & Answers

Free preview · every answer includes a full explanation

Product page: https://prepkeys.com/sy0-301.html

Question 1
Single choice

Which of the following is the BEST approach to perform risk mitigation of user access control rights?

A.

Conduct surveys and rank the results.

B.

Perform routine user permission reviews.

C.

Implement periodic vulnerability scanning.

D.

Disable user accounts that have not been used within the last two weeks.

Question 2
Single choice

Which of the following devices is BEST suited for servers that need to store private keys?

A.

Hardware security module

B.

Hardened network firewall

C.

Solid state disk drive

D.

Hardened host firewall

Question 3
Single choice

All of the following are valid cryptographic hash functions EXCEPT:

A.

RIPEMD.

B.

RC4.

C.

SHA-512.

D.

MD4.

Question 4
Single choice

In regards to secure coding practices, why is input validation important?

A.

It mitigates buffer overflow attacks.

B.

It makes the code more readable.

C.

It provides an application configuration baseline.

D.

It meets gray box testing standards.

Question 5
Single choice

Which of the following would be used when a higher level of security is desired for encryption key storage?

A.

TACACS+

B.

L2TP

C.

LDAP

D.

TPM

Question 6
Single choice

A security administrator needs to determine which system a particular user is trying to login to at various times of the day.

Which of the following log types would the administrator check?

A.

Firewall

B.

Application

C.

IDS

D.

Security

Question 7
Single choice

Which of the following MUST be updated immediately when an employee is terminated to prevent unauthorized access?

A.

Registration

B.

CA

C.

CRL

D.

Recovery agent

Question 8
Single choice

Employee badges are encoded with a private encryption key and specific personal information. The encoding is then used to provide access to the network.

Which of the following describes this access control type?

A.

Smartcard

B.

Token

C.

Discretionary access control

D.

Mandatory access control

Question 9
Single choice

Which of the following devices would MOST likely have a DMZ interface?

A.

Firewall

B.

Switch

C.

Load balancer

D.

Proxy

Question 10
Single choice

Which of the following application security testing techniques is implemented when an automated system generates random input data?

A.

Fuzzing

B.

XSRF

C.

Hardening

D.

Input validation

Showing 10 of 820 questions · Unlock the full set