SY0-301 Exam Questions
901 real SY0-301 exam questions with expert-verified answers and explanations. Page 16 of 19.
- Question #762Security architecture
A technician is investigating intermittent switch degradation. The issue only seems to occur when the buildings roof air conditioning system runs. Which of the following would redu...
EMI shieldingphysical securityenvironmental controlscable interference - Question #763Security architecture
According to company policy an administrator must logically keep the Human Resources department separated from the Accounting department. Which of the following would be the simple...
VLANnetwork segmentationlogical separation - Question #764Security operations
Which of the following tools will allow a technician to detect security-related TCP connection anomalies?
TCP anomaly detectionperformance monitoringnetwork monitoringsecurity tools - Question #765Security operations
A technician is reviewing the logical access control method an organization uses. One of the senior managers requests that the technician prevent staff members from logging on duri...
time of day restrictionslogical access controlaccount management - Question #766Security operations
An administrator notices that former temporary employees accounts are still active on a domain. Which of the following can be implemented to increase security and prevent this from...
account expirationidentity managementtemporary accountsaccess control - Question #767Security architecture
An administrator wishes to hide the network addresses of an internal network when connecting to the Internet. The MOST effective way to mask the network address of the users would...
NATnetwork address translationnetwork securityfirewall - Question #768Threats, vulnerabilities, and mitigations
Which of the following allows a technician to scan for missing patches on a device without actually attempting to exploit the security problem?
vulnerability scannerpatch managementnon-intrusive scanningsecurity assessment - Question #771General security concepts
By default, which of the following uses TCP port 22? (Select THREE).
TCP port 22SSHSCPSFTP - Question #772Security architecture
Access mechanisms to data on encrypted USB hard drives must be implemented correctly otherwise.
USB encryptiondata securityaccess controlssecurity bypass - Question #774Security operations
The security administrator is currently unaware of an incident that occurred a week ago. Which of the following will ensure the administrator is notified in a timely manner in the...
routine auditingincident detectionsecurity monitoringaudit logs - Question #775General security concepts
An access point has been configured for AES encryption but a client is unable to connect to it. Which of the following should be configured on the client to fix this issue?
CCMPAESwireless securityWPA2 - Question #776Security operations
The system administrator is tasked with changing the administrator password across all 2000 computers in the organization. Which of the following should the system administrator im...
group policypassword managementaccount managemententerprise administration - Question #777Security architecture
A network administrator wants to block both DNS requests and zone transfers coming from outside IP addresses. The company uses a firewall which implements an implicit allow and is...
ACLDNS securityzone transferfirewall rules - Question #778Threats, vulnerabilities, and mitigations
Which of the following attacks would cause all mobile devices to lose their association with corporate access points while the attack is underway?
wireless jammingdenial of servicewireless attacksdeauthentication - Question #779Security program management and oversight
Which of the following is a security concern regarding users bringing personally-owned devices that they connect to the corporate network?
BYODmobile securitypatch managementendpoint security - Question #780Security architecture
Due to issues with building keys being duplicated and distributed, a security administrator wishes to change to a different security control regarding a restricted area. The goal i...
physical securityfacial recognitionbiometricsaccess control - Question #781Security operations
A security administrator has concerns regarding employees saving data on company provided mobile devices. Which of the following would BEST address the administrator's concerns?
mobile device managementremovable mediadata securityMDM - Question #782Security program management and oversight
Identifying residual risk is MOST important to which of the following concepts?
residual riskrisk acceptancerisk managementrisk treatment - Question #783Security operations
The information security technician wants to ensure security controls are deployed and functioning as intended to be able to maintain an appropriate security posture. Which of the...
continuous security monitoringsecurity posturesecurity controlsmonitoring - Question #784Security architecture
A small company can only afford to buy an all-in-one wireless router/switch. The company has 3 wireless BYOD users and 2 web servers without wireless access. Which of the following...
VLAN segmentationACLnetwork segmentationBYOD - Question #785General security concepts
Due to hardware limitation, a technician must implement a wireless encryption algorithm that uses the RC4 protocol. Which of the following is a wireless encryption solution that th...
RC4TKIPWPAwireless encryption - Question #786General security concepts
Joe, a user, wants to send an encrypted email to Ann. Which of the following will Ann need to use to verify that the email came from Joe and decrypt it? (Select TWO).
PKIasymmetric encryptiondigital signaturesemail encryption - Question #787General security concepts
Joe, a user, wants to send an encrypted email to Ann. Which of the following will Ann need to use to verify the validity's of Joe's certificate? (Select TWO).
PKIcertificate validationCA trust chainpublic key infrastructure - Question #788General security concepts
A technician wants to implement a dual factor authentication system that will enable the organization to authorize access to sensitive systems on a need-to-know basis. Which of the...
multi-factor authenticationbiometricsauthorizationaccess control - Question #789Threats, vulnerabilities, and mitigations
A security researcher wants to reverse engineer an executable file to determine if it is malicious. The file was found on an underused server and appears to contain a zero-day expl...
malware analysisOS baseline comparisonzero-day exploitforensics - Question #790Threats, vulnerabilities, and mitigations
The business has an established relationship with an organization using the URL of following would BEST describe this type of attack?
typosquattingURL spoofingsocial engineeringphishing - Question #791Security architecture
A company has proprietary mission critical devices connected to their network which are configured remotely by both employees and approved customers. The administrator wants to mon...
IDSpassive monitoringnetwork securityavailability - Question #792Security architecture
An administrator has a network subnet dedicated to a group of users. Due to concerns regarding data and network security, the administrator desires to provide network access for th...
MAC filteringnetwork access controlswitch securityphysical addressing - Question #793Threats, vulnerabilities, and mitigations
A security administrator forgets their card to access the server room. The administrator asks a co- worker if they could use their card for the day. Which of the following is the a...
impersonationphysical securitysocial engineeringidentity - Question #794Security operations
A security administrator has implemented a policy to prevent data loss. Which of the following is the BEST method of enforcement?
DLPUSB encryptiondata protectionendpoint security - Question #795General security concepts
Symmetric encryption utilizes __________, while asymmetric encryption utilizes _________.
symmetric encryptionasymmetric encryptionshared keyscryptography fundamentals - Question #796Security architecture
The main corporate website has a service level agreement that requires availability 100% of the time, even in the case of a disaster. Which of the following would be required to me...
high availabilitydisaster recoverygeographic redundancySLA - Question #797Threats, vulnerabilities, and mitigations
Which of the following is a vulnerability associated with disabling pop-up blockers?
browser securitypop-up blockersmalicious code executionweb vulnerabilities - Question #798Security architecture
A security technician needs to open ports on a firewall to allow for domain name resolution. Which of the following ports should be opened? (Select TWO).
DNSport numbersfirewall rulesTCP UDP - Question #799Threats, vulnerabilities, and mitigations
During an anonymous penetration test, Jane, a system administrator, was able to identify a shared print spool directory, and was able to download a document from the spool. Which s...
penetration testingfile permissionsnetwork sharesaccess control - Question #800Threats, vulnerabilities, and mitigations
An IT security technician is actively involved in identifying coding issues for her company. Which of the following is an application security technique that can be used to identif...
fuzzingapplication security testingvulnerability discoverydynamic analysis - Question #801General security concepts
Which of the following data security techniques will allow Matt, an IT security technician, to encrypt a system with speed as its primary consideration?
hardware encryptionfull disk encryptionencryption performancedata security - Question #802General security concepts
Matt, a forensic analyst, wants to obtain the digital fingerprint for a given message. The message is 160-bits long. Which of the following hashing methods would Matt have to use t...
SHA1hashing algorithmsdigital fingerprinthash output size - Question #803General security concepts
A system administrator is notified by a staff member that their laptop has been lost. The laptop contains the user's digital certificate. Which of the following will help resolve t...
certificate revocationPKICRLcertificate lifecycle - Question #804Security program management and oversight
A security engineer is given new application extensions each month that need to be secured prior to implementation. They do not want the new extensions to invalidate or interfere w...
change managementregression testingsecurity policyapplication security - Question #805Security operations
During an audit, the security administrator discovers that there are several users that are no longer employed with the company but still have active user accounts. Which of the fo...
account managementidentity lifecycleoffboardingaccess control - Question #806Security architecture
A system administrator has concerns regarding their users accessing systems and secured areas using others' credentials. Which of the following can BEST address this concern?
biometricsauthenticationphysical access controlcredential management - Question #807General security concepts
A network administrator has a separate user account with rights to the domain administrator group. However, they cannot remember the password to this account and are not able to lo...
authenticationpassword managementidentity verification - Question #808Security architecture
Jane has implemented an array of four servers to accomplish one specific task. This is BEST known as which of the following?
clusteringhigh availabilityserver redundancy - Question #809Security operations
Which of the following security account management techniques should a security analyst implement to prevent staff, who has switched company roles, from exceeding privileges?
least privilegeaccount auditingprivilege managementrole-based access - Question #810General security concepts
To ensure compatibility with their flagship product, the security engineer is tasked to recommend an encryption cipher that will be compatible with the majority of third party soft...
AESsymmetric encryptionencryption standardscipher selection - Question #811Security architecture
After a new firewall has been installed, devices cannot obtain a new IP address. Which of the following ports should Matt, the security administrator, open on the firewall?
DHCPfirewall portsport 68network protocols - Question #812Security operations
A system administrator has noticed that users change their password many times to cycle back to the original password when their passwords expire. Which of the following would BEST...
password policyminimum password agepassword historyaccount management - Question #813Security operations
The systems administrator notices that many employees are using passwords that can be easily guessed or are susceptible to brute force attacks. Which of the following would BEST mi...
password complexitybrute forcepassword policyaccount lockout - Question #814Threats, vulnerabilities, and mitigations
Pete, a security analyst, has been tasked with explaining the different types of malware to his colleagues. The two malware types that the group seems to be most interested in are...
botnetsvirusesmalware classificationDDoS