nerdexam
CompTIACompTIA

SY0-701 · Question #460

SY0-701 Question #460: Real Exam Question with Answer & Explanation

Sign in or unlock SY0-701 to reveal the answer and full explanation for question #460. The question stem and answer options stay visible for context.

Submitted by the_admin· Mar 6, 2026Threats, vulnerabilities, and mitigations

Question

A penetration test has demonstrated that domain administrator accounts were vulnerable to pass- the-hash attacks. Which of the following would have been the best strategy to prevent the threat actor from using domain administrator accounts?

Options

  • AAudit each domain administrator account weekly for password compliance.
  • BImplement a privileged access management solution.
  • CCreate IDS policies to monitor domain controller access.
  • DUse Group Policy to enforce password expiration.

Unlock SY0-701 to see the answer

You've previewed enough free SY0-701 questions. Unlock SY0-701 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full SY0-701 PracticeBrowse All SY0-701 Questions