Exit demo SY0-601 Security+ PDF format · free preview

CompTIA SY0-601 - Questions & Answers

Free preview · every answer includes a full explanation

Product page: https://prepkeys.com/sy0-601.html

Question 1
Single choice

Which of the following would produce the closet experience of responding to an actual incident response scenario?

A.

Lessons learned

B.

Simulation

C.

Walk-through

D.

Tabletop

Question 2
Single choice

Which of the following would be BEST for a technician to review to determine the total risk an organization can bear when assessing a "cloud-first" adoption strategy?

A.

Risk matrix

B.

Risk tolerance

C.

Risk register

D.

Risk appetite

Question 3
Single choice

A major clothing company recently lost of large of priority information. The security officer must find a solution to ensure this never happens again.

Which of the following is the BEST technician implementation to present this from happening again?

A.

Configure DLP solution

B.

Disable peer-to-peer sharing

C.

Enable role-based access controls.

D.

Mandate job rotation

E.

Implement content filters

Question 4
Single choice

A security analyst notices several attacks are being blocked by the NIPS but does not see anything on the boundary firewall logs.

The attack seems to have been thwarted Which of the following resiliency techniques was applied to the network to prevent this attack?

A.

NIC Teaming

B.

Port mirroring

C.

Defense in depth

D.

High availability

E.

Geographic dispersal

Question 5
Single choice

Which of the following environment utilizes dummy data and is MOST to be installed locally on a system that allows to be assessed directly and modified easily wit each build?

A.

Production

B.

Test

C.

Staging

D.

Development

Question 6
Single choice

While reviewing pcap data, a network security analyst is able to locate plaintext usernames and passwords being sent from workstations to network witches.

Which of the following is the security analyst MOST likely observing?

A.

SNMP traps

B.

A Telnet session

C.

An SSH connection

D.

SFTP traffic

Question 7
Single choice

A company is required to continue using legacy software to support a critical service.

Which of the following BEST explains a risk of this practice?

A.

Default system configuration

B.

Unsecure protocols

C.

Lack of vendor support

D.

Weak encryption

Question 8
Single choice

one of the attendees starts to notice delays in the connection. and the HTTPS site requests are reverting to HTTP.

Which of the following BEST describes what is happening?

A.

Birthday collision on the certificate key

B.

DNS hyacking to reroute traffic

C.

Brute force to the access point

D.

A SSUTLS downgrade

Question 9
Single choice

Which of the following environments can be stood up in a short period of time, utilizes either dummy data or actual data, and is used to demonstrate and model system capabilities and functionality for a fixed, agreed-upon duration of time?

A.

PoC

B.

Production

C.

Test

D.

Development

Question 10
Single choice

A bad actor tries to persuade someone to provide financial information over the phone in order to gain access to funds.

Which of the following types of attacks does this scenario describe?

A.

Vishing

B.

Phishing

C.

Spear phishing

D.

Whaling

Showing 10 of 1,334 questions · Unlock the full set