SY0-301 Exam Questions
901 real SY0-301 exam questions with expert-verified answers and explanations. Page 10 of 19.
- Question #453Security architecture
Which of the following are examples of network segmentation? (Select TWO).
network segmentationDMZsubnettingnetwork architecture - Question #454Security architecture
Which of the following provides the strongest authentication security on a wireless network?
WPA2wireless securityauthentication strengthencryption - Question #455Security program management and oversight
Which of the following provides the BEST explanation regarding why an organization needs to implement IT security policies?
security policyrisk managementorganizational riskgovernance - Question #456Security operations
An incident response team member needs to perform a forensics examination but does not have the required hardware. Which of the following will allow the team member to perform the...
digital forensicsevidence preservationread-only mountincident response - Question #457General security concepts
Which of the following allows an organization to store a sensitive PKI component with a trusted third party?
key escrowPKIcryptographic key managementtrusted third party - Question #458Security architecture
Which of the following security devices can be replicated on a Linux based computer using IP tables to inspect and properly handle network based traffic?
firewalliptablesLinux securitypacket filtering - Question #459General security concepts
A software firm posts patches and updates to a publicly accessible FTP site. The software firm also posts digitally signed checksums of all patches and updates. The firm does this...
digital signatureintegrity verificationchecksumssoftware distribution - Question #460Security operations
An administrator has successfully implemented SSL on srv4.comptia.com using wildcard certificate *.comptia.com, and now wishes to implement SSL on srv5.comptia.com. Which of the fo...
wildcard certificateSSL/TLSPKI deploymentprivate key management - Question #461Security architecture
When reviewing security logs, an administrator sees requests for the AAAA record of
DNSAAAA recordIPv6name resolution - Question #462Security operations
Which of the following practices reduces the management burden of access management?
group-based accessprivilege managementaccess controlIAM - Question #463Security program management and oversight
Which of the following helps to apply the proper security controls to information?
data classificationinformation securitydata handlingsecurity controls - Question #464Threats, vulnerabilities, and mitigations
Which of the following describes purposefully injecting extra input during testing, possibly causing an application to crash?
fuzzingapplication testingvulnerability testingsoftware security - Question #465Security architecture
Which of the following types of security services are used to support authentication for remote users and devices?
RADIUSremote authenticationAAAauthentication protocols - Question #466Security architecture
A Chief Information Security Officer (CISO) is tasked with outsourcing the analysis of security logs. These will need to still be reviewed on a regular basis to ensure the security...
cloud service modelsMaaSsecurity monitoringlog analysis - Question #467Security architecture
A security administrator needs a locally stored record to remove the certificates of a terminated employee. Which of the following describes a service that could meet these require...
CRLPKIcertificate revocationdigital certificates - Question #468Security operations
A security analyst informs the Chief Executive Officer (CEO) that a security breach has just occurred. This results in the Risk Manager and Chief Information Officer (CIO) being ca...
incident managementincident responseescalationcommunication - Question #469Security architecture
Which of the following relies on the use of shared secrets to protect communication?
RADIUSshared secretsauthentication protocolsAAA - Question #470Threats, vulnerabilities, and mitigations
A security administrator wants to test the reliability of an application which accepts user provided parameters. The administrator is concerned with data integrity and availability...
fuzzingapplication testinginput validationdata integrity - Question #471Security program management and oversight
Which of the following concepts is a term that directly relates to customer privacy considerations?
PIIdata privacycustomer privacydata handling - Question #472Security operations
Which of the following is a Data Loss Prevention (DLP) strategy and is MOST useful for securing data in use?
DLPdata in useendpoint protectiondata loss prevention - Question #473Threats, vulnerabilities, and mitigations
Which of the following is a concern when encrypting wireless data with WEP?
WEPwireless securityinitialization vectorsencryption weakness - Question #474Security program management and oversight
A security administrator is tasked with calculating the total ALE on servers. In a two year period of time, a company has to replace five servers. Each server replacement has cost...
ALErisk quantificationAROSLE - Question #475Security operations
ABC company has a lot of contractors working for them. The provisioning team does not always get notified that a contractor has left the company. Which of the following policies wo...
account expirationaccess controlidentity managementcontractor access - Question #476Threats, vulnerabilities, and mitigations
The practice of marking open wireless access points is called which of the following?
war chalkingwireless reconnaissanceopen access pointsphysical security - Question #477Security architecture
Multi-tenancy is a concept found in which of the following?
multi-tenancycloud computingcloud securityvirtualization - Question #478Threats, vulnerabilities, and mitigations
Which of the following is a common coding error in which boundary checking is not performed?
input validationboundary checkingsecure codingapplication security - Question #479Threats, vulnerabilities, and mitigations
While previously recommended as a security measure, disabling SSID broadcast is not effective against most attackers because network SSIDs are:
SSID broadcastwireless securitysecurity through obscurity802.11 - Question #480Threats, vulnerabilities, and mitigations
One of the most consistently reported software security vulnerabilities that leads to major exploits is:
input validationsoftware vulnerabilitiessecure codingapplication security - Question #481Security architecture
Public key certificates and keys that are compromised or were issued fraudulently are listed on which of the following?
CRLPKIcertificate revocationdigital certificates - Question #482General security concepts
One of the most basic ways to protect the confidentiality of data on a laptop in the event the device is physically stolen is to implement which of the following?
whole disk encryptiontwo-factor authenticationdata confidentialityphysical security - Question #483General security concepts
Users report that after downloading several applications, their systems' performance has noticeably decreased. Which of the following would be used to validate programs prior to in...
MD5hashingintegrity verificationmalware prevention - Question #484Threats, vulnerabilities, and mitigations
Ann, a security analyst, has been notified that trade secrets are being leaked from one of the executives in the corporation. When reviewing this executive's laptop she notices sev...
steganographydata exfiltrationinsider threatimage files - Question #485Threats, vulnerabilities, and mitigations
A malicious user is sniffing a busy encrypted wireless network waiting for an authorized client to connect to it. Only after an authorized client has connected and the hacker was a...
WPA crackinghandshake capturebrute forcewireless security - Question #486Security architecture
Which of the following protocols is used by IPv6 for MAC address resolution?
NDPIPv6MAC address resolutionnetwork protocols - Question #487General security concepts
Which of the following provides dedicated hardware-based cryptographic functions to an operating system and its applications running on laptops and desktops?
TPMhardware cryptographytrusted platform moduleendpoint security - Question #488Security operations
Which of the following tests a number of security controls in the least invasive manner?
vulnerability scansecurity assessmentnon-invasive testingrisk management - Question #489General security concepts
When using PGP, which of the following should the end user protect from compromise? (Select TWO).
PGPprivate keykey passwordasymmetric encryption - Question #490Security operations
Which of the following disaster recovery strategies has the highest cost and shortest recovery time?
hot sitedisaster recoveryRTObusiness continuity - Question #491Security program management and oversight
In the case of a major outage or business interruption, the security office has documented the expected loss of earnings, potential fines and potential consequence to customer serv...
Business Impact Analysisfinancial impactbusiness continuityrisk assessment - Question #492Threats, vulnerabilities, and mitigations
After visiting a website, a user receives an email thanking them for a purchase which they did not request. Upon investigation the security administrator sees the following source...
CSRFcross-site request forgeryweb application attackmalicious form submission - Question #493Security architecture
Which of the following ports should be used by a system administrator to securely manage a remote server?
SSHport 22remote managementsecure protocols - Question #494Security architecture
Which of the following ports is used to securely transfer files between remote UNIX systems?
SFTPSCPport 22secure file transfer - Question #495Security architecture
Which of the following is a security benefit of providing additional HVAC capacity or increased tonnage in a datacenter?
HVACenvironmental controlsMTBFphysical security - Question #496Security operations
Fuzzing is a security assessment technique that allows testers to analyze the behavior of software applications under which of the following conditions?
fuzzingapplication testingunexpected inputsoftware security - Question #497Threats, vulnerabilities, and mitigations
Which of the following types of wireless attacks would be used specifically to impersonate another WAP in order to gain unauthorized information from mobile users?
evil twinwireless attackWAP impersonationman-in-the-middle - Question #498Threats, vulnerabilities, and mitigations
Which of the following types of application attacks would be used to identify malware causing security breaches that have NOT yet been identified by any trusted sources?
zero-dayunidentified exploitmalwarevulnerability - Question #499General security concepts
Which of the following is built into the hardware of most laptops but is not setup for centralized management by default?
TPMlaptop hardwarecentralized managementencryption - Question #500General security concepts
Which of the following is true about the recovery agent?
recovery agentPKIprivate key recoverykey management - Question #501Security program management and oversight
Which of the following MOST specifically defines the procedures to follow when scheduled system patching fails resulting in system outages?
change managementpatch managementrollback proceduressystem outage - Question #502Security architecture
A review of the company's network traffic shows that most of the malware infections are caused by users visiting gambling and gaming websites. The security manager wants to impleme...
UTMcontent filteringmalware preventionweb security