SY0-301 Exam Questions
901 real SY0-301 exam questions with expert-verified answers and explanations. Page 17 of 19.
- Question #815Security operations
A security analyst implemented group-based privileges within the company active directory. Which of the following account management techniques should be undertaken regularly to en...
least privilegegroup managementactive directoryaccount auditing - Question #816Security architecture
A technician has just installed a new firewall onto the network. Users are reporting that they cannot reach any website. Upon further investigation, the technician determines that...
DNSfirewallname resolutionnetwork troubleshooting - Question #817Threats, vulnerabilities, and mitigations
The system administrator has been notified that many users are having difficulty connecting to the company's wireless network. They take a new laptop and physically go to the acces...
rogue access pointwireless securitychannel interferenceevil twin - Question #818Security architecture
The systems administrator wishes to implement a hardware-based encryption method that could also be used to sign code. They can achieve this by:
TPMhardware encryptioncode signingtrusted platform module - Question #819Security architecture
The Chief Information Security Officer (CISO) has mandated that all IT systems with credit card data be segregated from the main corporate network to prevent unauthorized access an...
network segmentationPCI DSSfirewallsaccess logging - Question #820Security operations
One of the servers on the network stops responding due to lack of available memory. Server administrators did not have a clear definition of what action should have taken place bas...
performance baselinecapacity planningincident preventionmonitoring - Question #821Security program management and oversight
Used in conjunction, which of the following are PII? (Select TWO).
PIIpersonally identifiable informationdata classificationprivacy - Question #822Threats, vulnerabilities, and mitigations
Which of the following is the BEST way to prevent Cross-Site Request Forgery (XSRF) attacks?
CSRFcross-site request forgeryHTTP headersweb application security - Question #823Threats, vulnerabilities, and mitigations
Which of the following practices is used to mitigate a known security vulnerability?
patch managementvulnerability mitigationknown vulnerabilities - Question #824Threats, vulnerabilities, and mitigations
Which of the following would Jane, an administrator, use to detect an unknown security vulnerability?
application fuzzingvulnerability discoverysecurity testingunknown vulnerabilities - Question #825General security concepts
When reviewing a digital certificate for accuracy, which of the following would Matt, a security administrator, focus on to determine who affirms the identity of the certificate ow...
certificate authoritydigital certificatesPKIidentity verification - Question #826Security architecture
An administrator values transport security strength above network speed when implementing an SSL VPN. Which of the following encryption ciphers would BEST meet their needs?
SSL VPNencryption ciphersAEStransport security - Question #827General security concepts
All of the following are encryption types EXCEPT:
encryption typesfull disk encryptionSMIMERADIUS - Question #828Security architecture
Which of the following is used by Matt, a security administrator, to lower the risks associated with electrostatic discharge, corrosion, and thermal breakdown?
environmental controlselectrostatic dischargetemperature and humidityphysical security - Question #829Threats, vulnerabilities, and mitigations
When integrating source material from an open source project into a highly secure environment, which of the following precautions should prevent hidden threats?
code reviewopen source securitysupply chain risksecure development - Question #830Security architecture
Which of the following would MOST likely belong in the DMZ? (Select TWO).
DMZnetwork segmentationweb serversSMTP gateway - Question #831General security concepts
When verifying file integrity on a remote system that is bandwidth limited, which of the following tool combinations provides the STRONGEST confidence?
file integrityhashing algorithmsMD5SHA-1 - Question #832Security operations
Requiring technicians to report spyware infections is a step in which of the following?
incident managementspyware reportingmalware responsesecurity procedures - Question #833Security program management and oversight
An organization is recovering data following a datacenter outage and determines that backup copies of files containing personal information were stored in an unsecure location, bec...
data classificationdata sensitivitybackup securityinformation management - Question #834Security architecture
Which of the following provides the LEAST availability?
RAID levelsavailabilityfault tolerancedata redundancy - Question #835General security concepts
FTP/S uses which of the following TCP ports by default?
FTP/Sport numberssecure file transferTCP ports - Question #836General security concepts
Which of the following is mainly used for remote access into the network?
RADIUSremote accessAAAnetwork authentication - Question #837General security concepts
Which of the following types of data encryption would Matt, a security administrator, use to encrypt a specific table?
database encryptionencryption typestable-level encryptiondata at rest - Question #838Threats, vulnerabilities, and mitigations
Several users' computers are no longer responding normally and sending out spam email to the users' entire contact list. This is an example of which of the following?
wormmalware classificationspam propagationbotnet - Question #839Threats, vulnerabilities, and mitigations
Sara, an attacker, is recording a person typing in their ID number into a keypad to gain access to the building. Sara then calls the helpdesk and informs them that their PIN no lon...
shoulder surfingimpersonationsocial engineeringattack sequencing - Question #840Security architecture
A company replaces a number of devices with a mobile appliance, combining several functions. Which of the following descriptions fits this new implementation? (Select TWO).
all-in-one devicesingle point of failurenetwork consolidationappliance convergence - Question #841Threats, vulnerabilities, and mitigations
Which of the following risks could IT management be mitigating by removing an all-in-one device?
single point of failureall-in-one device riskavailability riskrisk mitigation - Question #842Threats, vulnerabilities, and mitigations
Which of the following could a security administrator implement to mitigate the risk of tailgating for a large organization?
tailgatingphysical securitysocial engineeringsecurity awareness training - Question #843Security architecture
Which of the following concepts defines the requirement for data availability?
availabilitydisaster recovery planningCIA triadbusiness continuity - Question #844Security architecture
Pete, a security engineer, is trying to inventory all servers in a rack. The engineer launches RDP sessions to five different PCs and notices that the hardware properties are simil...
virtualizationvirtual machinesnetwork topologyserver consolidation - Question #845Threats, vulnerabilities, and mitigations
Sara, a security administrator, is noticing a slow down in the wireless network response. Sara launches a wireless sniffer and sees a large number of ARP packets being sent to the...
IV attackwireless securityARP injectionWEP vulnerability - Question #846Threats, vulnerabilities, and mitigations
Pete, the security administrator, has been notified by the IDS that the company website is under attack. Analysis of the web logs show the following string, indicating a user is tr...
XSSweb application attacksinjection attackslog analysis - Question #847Security architecture
Which of the following techniques describes the use of application isolation during execution to prevent system compromise if the application is compromised?
sandboxingapplication isolationexecution environment - Question #848Security operations
Matt, an IT administrator, wants to protect a newly built server from zero day attacks. Which of the following would provide the BEST level of protection?
HIPSzero-day attackshost intrusion preventionendpoint security - Question #849Security architecture
Jane, an IT administrator, is implementing security controls on a Microsoft Windows based kiosk used at a bank branch. This kiosk is used by the public for Internet banking. Which...
group policykiosk securityWindows hardeningaccess control - Question #850Security architecture
Sara, the Chief Information Officer (CIO), has tasked the IT department with redesigning the network to rely less on perimeter firewalls, to implement a standard operating environm...
data exfiltrationnetwork redesignBYODperimeter security - Question #851Security operations
Which of the following data loss prevention strategies mitigates the risk of replacing hard drives that cannot be sanitized?
full disk encryptiondata loss preventionmedia sanitizationdata at rest - Question #852General security concepts
Which of the following does Jane, a software developer, need to do after compiling the source code of a program to attest the authorship of the binary?
code signingdigital signaturesprivate keynon-repudiation - Question #853Security program management and oversight
The annual loss expectancy can be calculated by:
ALErisk calculationAROSLE - Question #854Security operations
Which of the following should Jane, the security administrator, do FIRST when an employee reports the loss of a corporate mobile device?
mobile device managementremote wipeincident responselost device - Question #855Threats, vulnerabilities, and mitigations
An application company sent out a software patch for one of their applications on Monday. The company has been receiving reports about intrusion attacks from their customers on Tue...
zero-day attackvulnerability exploitationpatch management - Question #856General security concepts
Which of the following protocols would be implemented to secure file transfers using SSL?
FTPSSSL/TLSsecure file transferprotocol selection - Question #857Security architecture
Which of the following are used to implement VPNs? (Select TWO).
VPNIPSecSSLtunneling protocols - Question #858General security concepts
A company recently implemented a TLS on their network. The company is MOST concerned with:
TLSconfidentialityencryptiontransport security - Question #859Threats, vulnerabilities, and mitigations
Which of the following describes how an attacker can send unwanted advertisements to a mobile device?
Bluetooth securitybluejackingmobile attackswireless threats - Question #860Security architecture
A network device that protects an enterprise based only on source and destination addresses is BEST described as:
packet filteringfirewall typesstateless filteringnetwork access control - Question #861Threats, vulnerabilities, and mitigations
A human resources employee receives an email from a family member stating there is a new virus going around. In order to remove the virus, a user must delete the Boot.ini file from...
hoaxsocial engineeringemail threatsuser awareness - Question #862General security concepts
A third party application has the ability to maintain its own user accounts or it may use single sign- on. To use single sign-on, the application is requesting the following inform...
LDAPsingle sign-ondirectory servicesauthentication protocols - Question #863Security architecture
Power and data cables from the network center travel through the building's boiler room. Which of the following should be used to prevent data emanation?
EMI shieldingdata emanationphysical securitycable protection - Question #864Security architecture
Which of the following must a security administrator implement to isolate public facing servers from both the corporate network and the Internet?
DMZnetwork segmentationpublic-facing serversperimeter security