SY0-301 Exam Questions
901 real SY0-301 exam questions with expert-verified answers and explanations. Page 11 of 19.
- Question #503Security architecture
Which of the following would the security engineer set as the subnet mask for the servers below to utilize host addresses on separate broadcast domains? Server 1: 192.168.100.6 Ser...
subnettingCIDR notationbroadcast domainsnetwork segmentation - Question #504Security architecture
Which of the following offerings typically allows the customer to apply operating system patches?
IaaScloud service modelsOS patchingshared responsibility - Question #505Security architecture
A technician is unable to manage a remote server. Which of the following ports should be opened on the firewall for remote server management? (Select TWO).
SSHRDPremote managementfirewall ports - Question #506Security architecture
Which of the following network design elements allows for many internal devices to share one public IP address?
PATNATIP address sharingnetwork translation - Question #507Security architecture
When designing a new network infrastructure, a security administrator requests that the intranet web server be placed in an isolated area of the network for security purposes. Whic...
DMZnetwork segmentationweb server isolationperimeter security - Question #508Security architecture
Which of the following components of an all-in-one security appliance would MOST likely be configured in order to restrict access to peer-to-peer file sharing websites?
URL filteringUTMcontent controlpeer-to-peer blocking - Question #509Security architecture
At an organization, unauthorized users have been accessing network resources via unused network wall jacks. Which of the following would be used to stop unauthorized access?
port security802.1Xnetwork access controlswitch security - Question #510Security architecture
Users report that they are unable to access network printing services. The security technician checks the router access list and sees that web, email, and secure shell are allowed....
implicit denyACLfirewall rulesnetwork printing - Question #511Security operations
Joe, a security administrator, believes that a network breach has occurred in the datacenter as a result of a misconfigured router access list, allowing outside access to an SSH se...
SSHlog analysisport 22access control lists - Question #512Security architecture
Which of the following firewall types inspects Ethernet traffic at the MOST levels of the OSI model?
stateful firewallOSI modelpacket inspectionfirewall types - Question #513Security architecture
A security analyst needs to logon to the console to perform maintenance on a remote server. Which of the following protocols would provide secure access?
SSHremote accesssecure protocolsconsole management - Question #514Security operations
The network administrator has been tasked to rebuild a compromised web server. The administrator is to remove the malware and install all the necessary updates and patches. This re...
incident responseeradicationmalware removalpatching - Question #515Security architecture
Management has been informed of an increased number of tailgating violations into the server room. Which of the following is the BEST method of preventing future violations?
man traptailgatingphysical securityaccess control - Question #516General security concepts
Ann, a newly hired human resource employee, sent out confidential emails with digital signatures, to an unintended group. Which of the following would prevent her from denying acco...
non-repudiationdigital signaturesaccountabilityemail security - Question #517General security concepts
Ann would like to forward some Personal Identifiable Information to her HR department by email, but she is worried about the confidentiality of the information. Which of the follow...
encryptionconfidentialityPIIemail security - Question #518Security architecture
Ann, a technician, is attempting to establish a remote terminal session to an end user's computer using Kerberos authentication, but she cannot connect to the destination machine....
RDPport 3389Kerberosremote desktop - Question #519Security architecture
Concurrent use of a firewall, content filtering, antivirus software and an IDS system would be considered components of:
defense in depthlayered securitysecurity controlsnetwork security - Question #520Security architecture
A company is trying to limit the risk associated with the use of unapproved USB devices to copy documents. Which of the following would be the BEST technology control to use in thi...
DLPUSB controlsdata exfiltrationendpoint security - Question #521General security concepts
A company's employees were victims of a spear phishing campaign impersonating the CEO. The company would now like to implement a solution to improve the overall security posture by...
digital signaturesemail authenticationspear phishingnon-repudiation - Question #522Threats, vulnerabilities, and mitigations
Which of the following is a security risk regarding the use of public P2P as a method of collaboration?
P2P file sharingdata integritycollaboration securityinformation disclosure - Question #523Security program management and oversight
The method to provide end users of IT systems and applications with requirements related to acceptable use, privacy, new threats and trends, and use of social networking is:
security awareness traininguser educationsocial engineeringacceptable use - Question #524Security operations
After an audit, it was discovered that the security group memberships were not properly adjusted for employees' accounts when they moved from one role to another. Which of the foll...
account managementuser rights reviewrole-based accessaccess control - Question #525Security operations
A security technician wishes to gather and analyze all Web traffic during a particular time period. Which of the following represents the BEST approach to gathering the required da...
proxy serverweb traffic monitoringnetwork loggingports 80 443 - Question #526Security architecture
A security administrator suspects that an increase in the amount of TFTP traffic on the network is due to unauthorized file transfers, and wants to configure a firewall to block al...
TFTPfirewall rulesUDP port 69protocol blocking - Question #527Security architecture
A company determines a need for additional protection from rogue devices plugging into physical ports around the building. Which of the following provides the highest degree of pro...
802.1xnetwork access controlport securityrogue devices - Question #528Security operations
The Chief Technical Officer (CTO) is worried about an increased amount of malware detected on end user's workstations. Which of the following technologies should be recommended to...
host-based IDSmalware detectionendpoint securityanomaly detection - Question #529Security operations
The network security engineer just deployed an IDS on the network, but the Chief Technical Officer (CTO) has concerns that the device is only able to detect known anomalies. Which...
signature-based IDSintrusion detectionknown threatsIDS types - Question #530Security program management and oversight
Joe, a newly hired employee, has a corporate workstation that has been compromised due to several visits to P2P sites. Joe insisted that he was not aware of any company policy that...
acceptable use policyuser policypolicy enforcementP2P restrictions - Question #531Security operations
A compromised workstation utilized in a Distributed Denial of Service (DDOS) attack has been removed from the network and an image of the hard drive has been created. However, the...
chain of custodydigital forensicsevidence handlingincident response - Question #532Security operations
The Chief Technical Officer (CTO) has tasked The Computer Emergency Response Team (CERT) to develop and update all Internal Operating Procedures and Standard Operating Procedures d...
incident handlingpreparation phaseSOPsCERT - Question #533Security operations
Company XYZ recently salvaged company laptops and removed all hard drives, but the Chief Information Officer (CIO) is concerned about disclosure of confidential information. Which...
media sanitizationdata disposalphysical destructionhard drive security - Question #534Security operations
During which of the following phases of the Incident Response process should a security administrator define and implement general defense against malware?
incident responsepreparation phasemalware defenseproactive controls - Question #535Security architecture
A company has recently implemented a high density wireless system by having a junior technician install two new access points for every access point already deployed. Users are now...
wireless site surveyaccess point densitychannel interferencewireless planning - Question #536Security architecture
A company provides secure wireless Internet access for visitors and vendors working onsite. Some of the vendors using older technology report that they are unable to access the wir...
SSID broadcastwireless accesslegacy device compatibilitywireless configuration - Question #537Security program management and oversight
A company is looking to reduce the likelihood of employees in the finance department being involved with money laundering. Which of the following controls would BEST mitigate this...
mandatory vacationfraud preventionpersonnel controlsinsider threat - Question #538Security architecture
A company recently experienced data loss when a server crashed due to a midday power outage. Which of the following should be used to prevent this from occurring again?
redundancypower outagefault toleranceavailability - Question #539Security architecture
Joe, a security administrator, is concerned with users tailgating into the restricted areas. Given a limited budget, which of the following would BEST assist Joe with detecting thi...
tailgatingphysical securityCCTVsurveillance - Question #540General security concepts
It is important to staff who use email messaging to provide PII to others on a regular basis to have confidence that their messages are not intercepted or altered during transmissi...
data integrityCIA triademail securityPII protection - Question #541General security concepts
A security manager requires fencing around the perimeter, and cipher locks on all entrances. The manager is concerned with which of the following security controls?
physical securityperimeter controlscipher lockssafety controls - Question #542Security architecture
A security engineer is reviewing log data and sees the output below: POST: /payload.php HTTP/1.1 HOST: localhost Accept: */* ******* HTTP/1.1 403 Forbidden Connection: close Log: A...
WAFlog analysisHTTPform bypass - Question #543Security architecture
A security team has identified that the wireless signal is broadcasting into the parking lot. To reduce the risk of an attack against the wireless network from the parking lot, whi...
wireless securityantenna placementpower levelssignal control - Question #544Security architecture
An organization does not have adequate resources to administer its large infrastructure. A security administrator wishes to integrate the security controls of some of the network d...
UTMunified threat managementnetwork securitysecurity integration - Question #545Security architecture
Which of the following would allow the organization to divide a Class C IP address range into several ranges?
subnettingIP addressingnetwork segmentationClass C - Question #546Security architecture
A company's legacy server requires administration using Telnet. Which of the following protocols could be used to secure communication by offering encryption at a lower OSI layer?...
IPSecIPv6OSI modelprotocol security - Question #547Security architecture
Joe, the Chief Technical Officer (CTO), is concerned about new malware being introduced into the corporate network. He has tasked the security engineers to implement a technology t...
anomaly-based IDSnetwork monitoringintrusion detectionmalware detection - Question #548Security architecture
A security administrator wishes to increase the security of the wireless network. Which of the following BEST addresses this concern?
WPA2CCMPTKIPwireless encryption - Question #549Security program management and oversight
Which of the following describes the purpose of an MOU?
MOUlegal agreementsgovernancethird-party - Question #550Security program management and oversight
The system administrator has deployed updated security controls for the network to limit risk of attack. The security manager is concerned that controls continue to function as int...
routine auditsrisk mitigationsecurity controlscompliance - Question #551Security operations
The security manager received a report that an employee was involved in illegal activity and has saved data to a workstation's hard drive. During the investigation, local law enfor...
chain of custodydigital forensicsevidence handlinglegal - Question #552General security concepts
Environmental control measures include which of the following?
EMI shieldingenvironmental controlsphysical security