SY0-301 Practice Questions
904 real SY0-301 exam questions with expert-verified answers and explanations. Page 1 of 19.
- Question #1
Which of the following devices is BEST suited for servers that need to store private keys?
- Question #2
All of the following are valid cryptographic hash functions EXCEPT:
- Question #3
In regards to secure coding practices, why is input validation important?
- Question #4
Which of the following would be used when a higher level of security is desired for encryption key storage?
- Question #5
A security administrator needs to determine which system a particular user is trying to login to at various times of the day. Which of the following log types would the administrat...
- Question #6
Which of the following MUST be updated immediately when an employee is terminated to prevent unauthorized access?
- Question #7
Employee badges are encoded with a private encryption key and specific personal information. The encoding is then used to provide access to the network. Which of the following desc...
- Question #8
Which of the following devices would MOST likely have a DMZ interface?
- Question #9
Which of the following application security testing techniques is implemented when an automated system generates random input data?
- Question #10
Which of the following can be used by a security administrator to successfully recover a user's forgotten password on a password protected file?
- Question #11
A security administrator wants to check user password complexity. Which of the following is the BEST tool to use?
- Question #12
Certificates are used for: (Select TWO).
- Question #13
Which of the following is a hardware based encryption device?
- Question #14
Which of the following BEST describes a protective countermeasure for SQL injection?
- Question #15
Which of the following MOST interferes with network-based detection techniques?
- Question #16
A certificate authority takes which of the following actions in PKI?
- Question #17
Use of a smart card to authenticate remote servers remains MOST susceptible to which of the following attacks?
- Question #18
Separation of duties is often implemented between developers and administrators in order to separate which of the following?
- Question #19
A security administrator needs to update the OS on all the switches in the company. Which of the following MUST be done before any actual switch configuration is performed?
- Question #20
Jane, an individual, has recently been calling various financial offices pretending to be another person to gain financial information. Which of the following attacks is being desc...
- Question #21
A user in the company is in charge of various financial roles but needs to prepare for an upcoming audit. They use the same account to access each financial system. Which of the fo...
- Question #22
A CRL is comprised of:
- Question #23
Sara, a user, downloads a keygen to install pirated software. After running the keygen, system performance is extremely slow and numerous antivirus alerts are displayed. Which of t...
- Question #24
Which of the following may significantly reduce data loss if multiple drives fail at the same time?
- Question #25
Which of the following should be considered to mitigate data theft when using CAT5 wiring?
- Question #26
To help prevent unauthorized access to PCs, a security administrator implements screen savers that lock the PC after five minutes of inactivity. Which of the following controls is...
- Question #27
Pete, a network administrator, is capturing packets on the network and notices that a large amount of the traffic on the LAN is SIP and RTP protocols. Which of the following should...
- Question #28
Which of the following IP addresses would be hosts on the same subnet given the subnet mask 255.255.255.224? (Select TWO).
- Question #29
Which of the following algorithms has well documented collisions? (Select TWO).
- Question #30
Which of the following is BEST used as a secure replacement for TELNET?
- Question #31
An email client says a digital signature is invalid and the sender cannot be verified. The recipient is concerned with which of the following concepts?
- Question #32
Which of the following is an effective way to ensure the BEST temperature for all equipment within a datacenter?
- Question #33
Which of the following transportation encryption protocols should be used to ensure maximum security between a web browser and a web server?
- Question #34
Developers currently have access to update production servers without going through an approval process. Which of the following strategies would BEST mitigate this risk?
- Question #35
Which of the following is a difference between TFTP and FTP?
- Question #36
Matt, an administrator, notices a flood fragmented packet and retransmits from an email server. After disabling the TCP offload setting on the NIC, Matt sees normal traffic with pa...
- Question #37
Which of the following is characterized by an attacker attempting to map out an organization's staff hierarchy in order to send targeted emails?
- Question #38
Which of the following would a security administrator implement in order to discover comprehensive security threats on a network?
- Question #39
Which of the following is an example of a false positive?
- Question #40
Data execution prevention is a feature in most operating systems intended to protect against which type of attack?
- Question #41
Use of group accounts should be minimized to ensure which of the following?
- Question #42
Privilege creep among long-term employees can be mitigated by which of the following procedures?
- Question #43
In which of the following scenarios is PKI LEAST hardened?
- Question #44
Configuring the mode, encryption methods, and security associations are part of which of the following?
- Question #45
Which of the following assessments would Pete, the security administrator, use to actively test that an application's security controls are in place?
- Question #46
A security administrator has just finished creating a hot site for the company. This implementation relates to which of the following concepts?
- Question #47
In the initial stages of an incident response, Matt, the security administrator, was provided the hard drives in question from the incident manager. Which of the following incident...
- Question #48
Which of the following is used to certify intermediate authorities in a large PKI deployment?
- Question #49
Which of the following components MUST be trusted by all parties in PKI?
- Question #50
Which of the following should Matt, a security administrator, include when encrypting smartphones? (Select TWO).