SY0-501 Exam Questions
551 real SY0-501 exam questions with expert-verified answers and explanations. Page 6 of 12.
- Question #252Security operations
During a recent audit, it was discovered that several user accounts belonging to former employees were still active and had valid VPN permissions. Which of the following would help...
access managementuser access reviewsoffboardingidentity management - Question #253Security program management and oversight
An organization is working with a cloud services provider to transition critical business applications to a hybrid cloud environment. The organization retains sensitive customer da...
cloud securitySLAdata protectionhybrid cloud - Question #254General security concepts
A security administrator wants to implement a company-wide policy to empower data owners to manage and enforce access control rules on various resources. Which of the following sho...
discretionary access controlDACaccess control modelsdata ownership - Question #255Threats, vulnerabilities, and mitigations
Which of the following BEST describes an attack where communications between two parties are intercepted and forwarded to each party with neither party being aware of the intercept...
man-in-the-middleMITMattack definitionsnetwork attacks - Question #256General security concepts
A security administrator wishes to implement a secure a method of file transfer when communicating with outside organizations. Which of the following protocols would BEST facilitat...
SCPFTPSsecure file transferprotocol security - Question #257
A technician needs to implement a system which will properly authenticate users by their username and password only when the users are logging in from a computer in the office buil...
- Question #258Security operations
After correctly configuring a new wireless enabled thermostat to control the temperature of the company's meeting room, Joe, a network administrator determines that the thermostat...
captive portalIoTwireless troubleshootingnetwork access control - Question #259Security operations
A Chief Security Officer (CSO) has been unsuccessful in attempts to access the website for a accessing the site? Blocked sites: *.nonews.com, *.rumorhasit.net, *.mars?
firewall rulescontent filteringURL filteringaccess control lists - Question #260Threats, vulnerabilities, and mitigations
Malware that changes its binary pattern on specific dates at specific times to avoid detection is known as a (n):
polymorphic virusmalware typesantivirus evasionvirus - Question #261General security concepts
A company is planning to encrypt the files in several sensitive directories of a file server with a symmetric key. Which of the following could be used?
symmetric encryptionTwoFishfile encryptioncryptographic algorithms - Question #262Security program management and oversight
Which of the following is a document that contains detailed information about actions that include how something will be done, when the actions will be performed, and penalties for...
SLAgovernance documentslegal agreementscompliance - Question #263General security concepts
Which of the following are MOST susceptible to birthday attacks?
birthday attackhashingpassword securitycryptographic attacks - Question #264Security operations
Joe a computer forensic technician responds to an active compromise of a database server. Joe first collects information in memory, then collects network traffic and finally conduc...
order of volatilitydigital forensicsincident responsememory forensics - Question #265General security concepts
A system administrator wants to implement an internal communication system that will allow employees to send encrypted messages to each other. The system must also support non- rep...
PGPnon-repudiationemail encryptiondigital signatures - Question #266Security operations
Given the log output: Max 15 00:15:23.431 CRT: #SEC_LOGIN-5-LOGIN_SUCCESS: Login Success [user: msmith] [Source: 10.0.12.45] [localport: 23] at 00:15:23:431 CET Sun Mar 15 2015 Whi...
telnetSSHinsecure protocolslog analysis - Question #267General security concepts
The firewall administrator is adding a new certificate for the company's remote access solution. The solution requires that the uploaded file contain the entire certificate chain f...
PKIcertificate chainintermediate CATLS certificates - Question #268Security architecture
The Chief Executive Officer (CEO) of a major defense contracting company a traveling overseas for a conference. The CEO will be taking a laptop. Which of the following should the s...
full disk encryptiondata confidentialitymobile device securitydata at rest - Question #269General security concepts
In an effort to reduce data storage requirements, a company devices to hash every file and eliminate duplicates. The data processing routines are time sensitive so the hashing algo...
hashing algorithmsSHAMD5data integrity - Question #270Security architecture
A new security policy in an organization requires that all file transfers within the organization be completed using applications that provide secure transfer. Currently, the organ...
SFTPTLSsecure protocolsfile transfer security - Question #271Security program management and oversight
A product manager is concerned about continuing operations at a facility located in a region undergoing significant political unrest. After consulting with senior management, a dec...
risk avoidancerisk management strategiesrisk treatmentbusiness continuity - Question #272Security operations
Joe notices there are several user accounts on the local network generating spam with embedded malicious code. Which of the following technical control should Joe put in place to B...
account lockoutaccess controltechnical controlsspam mitigation - Question #273General security concepts
Two users need to securely share encrypted files via email. Company policy prohibits users from sharing credentials or exchanging encryption keys. Which of the following can be imp...
PKIasymmetric encryptionkey managementsecure email - Question #274General security concepts
An information system owner has supplied a new requirement to the development team that calls for increased non-repudiation within the application. After undergoing several audits,...
non-repudiationdigital signaturesapplication securityaudit requirements - Question #275Threats, vulnerabilities, and mitigations
Joe a website administrator believes he owns the intellectual property for a company invention and has been replacing image files on the company's public facing website in the DMZ....
Insider ThreatSteganographyFile Integrity MonitoringData Exfiltration - Question #276General security concepts
The process of applying a salt and cryptographic hash to a password then repeating the process many times is known as which of the following?
key stretchingpassword hashingsaltPBKDF - Question #277Security architecture
Which of the following is commonly used for federated identity management across multiple organizations?
SAMLfederated identitySSOidentity management - Question #278Threats, vulnerabilities, and mitigations
While performing surveillance activities, an attacker determines that an organization is using 802.1X to secure LAN access. Which of the following attack mechanisms can the attacke...
802.1XMAC spoofingnetwork access controlauthentication bypass - Question #279General security concepts
A security administrator has been asked to implement a VPN that will support remote access over IPSEC. Which of the following is an encryption algorithm that would meet this requir...
AESIPSecVPNsymmetric encryption - Question #280General security concepts
A security administrator is evaluating three different services: radius, diameter, and Kerberos. Which of the following is a feature that is UNIQUE to Kerberos?
Kerberosticket-based authenticationauthentication protocolsSSO - Question #281Security architecture
Which of the following can affect electrostatic discharge in a network operations center?
electrostatic dischargehumidity controlsenvironmental controlsphysical security - Question #282Threats, vulnerabilities, and mitigations
A malicious attacker has intercepted HTTP traffic and inserted an ASCII line that sets the referrer URL. Which of the following is the attacker most likely utilizing?
header manipulationHTTP attacksweb application securityreferrer spoofing - Question #283Security operations
A company would like to prevent the use of a known set of applications from being used on company computers. Which of the following should the security administrator implement?
blacklistingapplication controlendpoint securityallow/deny lists - Question #284Security operations
A new hire wants to use a personally owned phone to access company resources. The new hire expresses concern about what happens to the data on the phone when they leave the company...
MDMstorage segmentationBYODdata separation - Question #285Security architecture
A consultant has been tasked to assess a client's network. The client reports frequent network outages. Upon viewing the spanning tree configuration, the consultant notices that an...
spanning tree protocolroot bridge electionnetwork switchingSTP - Question #286Security architecture
An organization is trying to decide which type of access control is most appropriate for the network. The current access control approach is too complex and requires significant ov...
discretionary access controlDACaccess control modelsauthorization - Question #287Security operations
While reviewing the security controls in place for a web-based application, a security controls assessor notices that there are no password strength requirements in place. Because...
password policybrute force attackspassword complexityauthentication hardening - Question #288Security operations
A security administrator determined that users within the company are installing unapproved software. Company policy dictates that only certain applications may be installed or ran...
application whitelistingendpoint securityOS controlssoftware restriction - Question #289Security architecture
A security administrator is tasked with implementing centralized management of all network devices. Network administrators will be required to logon to network devices using their...
TACACS+AAALDAPcentralized authentication - Question #290Threats, vulnerabilities, and mitigations
A website administrator has received an alert from an application designed to check the integrity of the company's website. The alert indicated that the hash value for a particular...
steganographyfile integritycovert channelsdata hiding - Question #291General security concepts
An attacker captures the encrypted communication between two parties for a week, but is unable to decrypt the messages. The attacker then compromises the session key during one exc...
perfect forward secrecysession keyscryptographic protocolskey exchange - Question #292CompTIA Security+ - Threats, Attacks and Vulnerabilities / Implement cybersecurity controls to mitigate phishing attacks using content filtering rules
Many employees are receiving email messages similar to the one shown below: From IT department To employee Subject email quota exceeded username and password to increase your email...
Content FilteringPhishing PreventionURL FilteringThreat Mitigation - Question #293Security architecture
A security analyst is reviewing the following packet capture of an attack directed at a company's server located in the DMZ: Which of the following ACLs provides the BEST protectio...
ACLIP filteringfirewall rulesnetwork traffic control - Question #294Security operations
The IT department needs to prevent users from installing untested applications. Which of the following would provide the BEST solution?
least privilegeaccess controlsoftware installation controlendpoint security - Question #295Threats, vulnerabilities, and mitigations
An attack that is using interference as its main attack to impede network traffic is which of the following?
wireless interferenceevil twin attackrogue access pointwireless attacks - Question #296General security concepts
An organization wants to conduct secure transactions of large data files. Before encrypting and exchanging the data files, the organization wants to ensure a secure exchange of key...
Diffie-Hellmankey exchangeasymmetric cryptographysecure key agreement - Question #297Security program management and oversight
Ann, a college professor, was recently reprimanded for posting disparaging remarks re-grading her coworkers on a web site. Ann stated that she was not aware that the public was abl...
security awareness trainingsocial networkingacceptable use policyuser behavior - Question #298Threats, vulnerabilities, and mitigations
During a recent audit, it was discovered that many services and desktops were missing security patches. Which of the following BEST describes the assessment that was performed to d...
vulnerability scanningpatch managementsecurity assessmentmissing patches - Question #299General security concepts
When generating a request for a new x.509 certificate for securing a website, which of the following is the MOST appropriate hashing algorithm?
x.509 certificatesSHA hashingPKIcertificate signing - Question #300General security concepts
The administrator installs database software to encrypt each field as it is written to disk. Which of the following describes the encrypted data?
data at restencryption statesdatabase encryptionstorage security - Question #301Security architecture
Which of the following allows an application to securely authenticate a user by receiving credentials from a web domain?
SAMLfederated identitySSOweb authentication