SY0-301 Exam Questions
901 real SY0-301 exam questions with expert-verified answers and explanations. Page 2 of 19.
- Question #51Threats, vulnerabilities, and mitigations
Which of the following is the below pseudo-code an example of? IF VARIABLE (CONTAINS NUMBERS = TRUE) THEN EXIT
input validationsecure codingapplication securityinjection prevention - Question #52General security concepts
A system administrator is using a packet sniffer to troubleshoot remote authentication. The administrator detects a device trying to communicate to TCP port 49. Which of the follow...
TACACS+port 49remote authenticationauthentication protocols - Question #53General security concepts
Which of the following can use RC4 for encryption? (Select TWO).
RC4WEPSSLstream cipher - Question #54Security program management and oversight
Which of the following defines a business goal for system restoration and acceptable data loss?
RPOrecovery point objectiveacceptable data lossbusiness continuity - Question #55General security concepts
If Organization A trusts Organization B and Organization B trusts Organization C, then Organization A trusts Organization C. Which of the following PKI concepts is this describing?
transitive trustPKI trust modelcertificate authoritytrust chain - Question #56Security program management and oversight
Which of the following concepts is BEST described as developing a new chain of command in the event of a contingency?
succession planningcontinuity of operationschain of commandcontingency planning - Question #57Security operations
Which of the following allows a company to maintain access to encrypted resources when employee turnover is high?
recovery agentkey managementencryption accessPKI - Question #58General security concepts
Which of the following devices will help prevent a laptop from being removed from a certain location?
cable locksphysical securityasset protectionlaptop security - Question #59General security concepts
Which of the following is the MOST secure protocol to transfer files?
FTPSsecure file transferprotocol comparisonencryption in transit - Question #60Security operations
Suspicious traffic without a specific signature was detected. Under further investigation, it was determined that these were false indicators. Which of the following security devic...
anomaly-based IDSfalse positivesIDS tuningintrusion detection - Question #61Security program management and oversight
A company storing data on a secure server wants to ensure it is legally able to dismiss and prosecute staff who intentionally access the server via Telnet and illegally tamper with...
warning bannersadministrative controlslegal complianceaccess authorization - Question #62General security concepts
Which of the following protocols is used to authenticate the client and server's digital certificate?
TLSdigital certificatesPKIauthentication protocols - Question #63Security operations
Which of the following can be used to mitigate risk if a mobile device is lost?
mobile device securitystrong passwordsdata loss preventionphysical security - Question #64Security program management and oversight
Which of the following security concepts would Sara, the security administrator, use to mitigate the risk of data loss?
clean desk policydata loss preventionadministrative controlsphysical security - Question #65General security concepts
Which of the following is an example of multifactor authentication?
multifactor authenticationauthentication factorssomething you havesomething you know - Question #66Security architecture
After Matt, a user, enters his username and password at the login screen of a web enabled portal, the following appears on his screen: `Please only use letters and numbers on these...
input validationweb application securitysecure codingerror handling - Question #67Security architecture
Which of the following should the security administrator implement to limit web traffic based on country of origin? (Select THREE).
geoblockingURL filteringfirewall rulesweb proxies - Question #68Threats, vulnerabilities, and mitigations
Several bins are located throughout a building for secure disposal of sensitive information. Which of the following does this prevent?
dumpster divingdata disposalphysical securitysensitive information - Question #69Security operations
Matt, a developer, recently attended a workshop on a new application. The developer installs the new application on a production system to test the functionality. Which of the foll...
change managementbaseline configurationproduction securityconfiguration management - Question #70Security program management and oversight
Sara, a company's security officer, often receives reports of unauthorized personnel having access codes to the cipher locks of secure areas in the building. Sara should immediatel...
security awareness trainingphysical securityaccess controlinsider threat - Question #71Security operations
Mike, a network administrator, has been asked to passively monitor network traffic to the company's sales websites. Which of the following would be BEST suited for this task?
network monitoringNIDSNIPSpassive monitoring - Question #72Threats, vulnerabilities, and mitigations
Mike, a security professional, is tasked with actively verifying the strength of the security controls on a company's live modem pool. Which of the following activities is MOST app...
war dialingpenetration testingmodem poolvulnerability assessment - Question #73Threats, vulnerabilities, and mitigations
Users at a company report that a popular news website keeps taking them to a web page with derogatory content. This is an example of which of the following?
DNS poisoningDNS spoofingnetwork attacksredirect attacks - Question #74General security concepts
An encrypted message is sent using PKI from Sara, a client, to a customer. Sara claims she never sent the message. Which of the following aspects of PKI BEST ensures the identity o...
PKInon-repudiationdigital signaturespublic key infrastructure - Question #75Security architecture
Jane, a security administrator, has observed repeated attempts to break into a server. Which of the following is designed to stop an intrusion on a specific server?
HIPSintrusion preventionhost-based securityserver protection - Question #76Security architecture
Matt, the IT Manager, wants to create a new network available to virtual servers on the same hypervisor, and does not want this network to be routable to the firewall. How could th...
virtual switchnetwork isolationhypervisor networkingVLAN - Question #77General security concepts
A security administrator implements access controls based on the security classification of the data and need-to-know information. Which of the following BEST describes this level...
mandatory access controlsdata classificationneed-to-knowaccess control models - Question #78Security architecture
A security administrator has configured FTP in passive mode. Which of the following ports should the security administrator allow on the firewall by default?
FTP passive modeport 21firewall configurationnetwork protocols - Question #79General security concepts
Which of the following could cause a browser to display the message below? "The security certificate presented by this website was issued for a different website's address."
SSL/TLS certificatescertificate CN mismatchPKIHTTPS - Question #80Security architecture
A company that purchased an HVAC system for the datacenter is MOST concerned with which of the following?
HVACavailabilitydata center securityenvironmental controls - Question #81Threats, vulnerabilities, and mitigations
Which of the following pseudocodes can be used to handle program exceptions?
exception handlingsecure codingerror handlinginput validation - Question #82Security architecture
Which of the following technologies uses multiple devices to share work?
load balancinghigh availabilitynetwork infrastructure - Question #83General security concepts
Which of the following protocols uses an asymmetric key to open a session and then establishes a symmetric key for the remainder of the session?
TLSasymmetric encryptionsymmetric encryptionHTTPS - Question #84Threats, vulnerabilities, and mitigations
Which of the following describes how Sara, an attacker, can send unwanted advertisements to a mobile device?
Bluetoothbluejackingmobile securitywireless attacks - Question #85General security concepts
Pete, an employee, is terminated from the company and the legal department needs documents from his encrypted hard drive. Which of the following should be used to accomplish this t...
key escrowrecovery agentencryptiondata recovery - Question #86Security program management and oversight
Which of the following mitigation strategies is established to reduce risk when performing updates to business critical systems?
change managementrisk mitigationpatch management - Question #87Threats, vulnerabilities, and mitigations
Which of the following can Pete, a security administrator, use to distribute the processing effort when generating hashes for a password cracking program?
clusteringpassword crackinghash crackingdistributed computing - Question #88Security operations
Which of the following should Jane, a security administrator, perform before a hard drive is analyzed with forensics tools?
digital forensicsforensic imagingevidence handlingincident response - Question #89Security architecture
Jane, an administrator, needs to make sure the wireless network is not accessible from the parking area of their office. Which of the following would BEST help Jane when deploying...
wireless securityantenna placementaccess pointcoverage control - Question #90Security architecture
Which of the following allows Pete, a security technician, to provide the MOST secure wireless implementation?
wireless securityWPAWEPencryption protocols - Question #91Security program management and oversight
Which of the following is a management control?
security controlsadministrative controlssecurity policymanagement controls - Question #92Security operations
Which of the following security strategies allows a company to limit damage to internal systems and provides loss control?
containmentincident responserisk mitigationdamage control - Question #93General security concepts
In order for Sara, a client, to logon to her desktop computer, she must provide her username, password, and a four digit PIN. Which of the following authentication methods is Sara...
authentication factorsmulti-factor authenticationsingle factorsomething you know - Question #94Threats, vulnerabilities, and mitigations
Using proximity card readers instead of the traditional key punch doors would help to mitigate:
physical securityshoulder surfingaccess controlproximity card - Question #95Threats, vulnerabilities, and mitigations
Which of the following application attacks is used to gain access to SEH?
buffer overflowSEHapplication exploitmemory corruption - Question #96General security concepts
Which of the following is an authentication service that uses UDP as a transport medium?
RADIUSAAAUDPauthentication protocols - Question #97Security architecture
Which of the following can be used on a smartphone to BEST protect against sensitive data loss if the device is stolen? (Select TWO).
mobile securityremote wipedevice encryptiondata protection - Question #98Security operations
Jane, a security analyst, is reviewing logs from hosts across the Internet which her company uses to gather data on new malware. Which of the following is being implemented by Jane...
honeynethoneypotmalware analysisthreat intelligence - Question #99Security program management and oversight
Which of the following should Pete, a security manager, implement to reduce the risk of employees working in collusion to embezzle funds from their company?
mandatory vacationinsider threatcollusionseparation of duties - Question #100Threats, vulnerabilities, and mitigations
Which of the following will allow Pete, a security analyst, to trigger a security alert because of a tracking cookie?
tracking cookiesanti-spywareendpoint securityspyware