SY0-701 Exam Questions
1,057 real SY0-701 exam questions with expert-verified answers and explanations. Page 20 of 22.
- Question #976General security concepts
Which of the following techniques would identify whether data has been modified in transit?
- Question #977Threats, vulnerabilities, and mitigations
Which of the following strategies most effectively protects sensitive data at rest in a database?
- Question #978Security Operations
Which of the following would an organization most likely use to minimize the loss of data on a file server in the event that data needs to be restored due to loss of the primary se...
- Question #979Threats, vulnerabilities, and mitigations
Which of the following would help reduce the impact of a zero-day vulnerability in NAS installed on a large office network?
- Question #980Threats, vulnerabilities, and mitigations
Which of the following should a security analyst use to prioritize the remediation of a vulnerability?
- Question #981Threats, vulnerabilities, and mitigations
An IT team rolls out a new management application that uses a randomly generated MFA token that is sent to the administrator's phone. Despite this new MFA precaution, there is a se...
- Question #982Security Operations
A security analyst reviews the following SIEM events: Which of the following best describes the observed behavior?
- Question #983Threats, vulnerabilities, and mitigations
A company hired a security consultant to suggest a device that will protect its inbound HTTP traffic by immediately blocking security violations. Which of the following should the...
- Question #984Threats, vulnerabilities, and mitigations
A security manager needs an automated solution that will take immediate action to protect an organization against inbound malicious traffic. Which of the following is the best solu...
- Question #985Security architecture
A Chief Security Officer wants to change user authentication to the company wireless network. The authentication must use the LDAP database and must be centrally managed. Which of...
- Question #986Security architecture
An administrator is creating domain profiles for each employee within the company. The administrator wants to make the process more efficient by assigning permissions based on user...
- Question #987Security Operations
A systems administrator needs to update systems without disrupting operations. Which of the following should the systems administrator and company leadership agree on?
- Question #988Security architecture
A company wants to improve the security of the local network by authenticating and encrypting all of the internal traffic between corporate sites. Which of the following should the...
- Question #989Security Operations
A security analyst identifies an incident in the network. Which of the following incident response activities would the security analyst perform next?
- Question #990Threats, vulnerabilities, and mitigations
An administrator discovers a cross-site scripting vulnerability on a company website. Which of the following will most likely remediate the issue?
- Question #991Security Operations
A service provider wants a cost-effective way to rapidly expand from providing internet links to managing them. Which of the following methods will allow the service provider to be...
- Question #992General security concepts
Which of the following control types describes an alert from a SIEM tool?
- Question #993Threats, vulnerabilities, and mitigations
Which of the following attacks primarily targets insecure networks?
- Question #994Threats, vulnerabilities, and mitigations
A penetration testing report indicated that an organization should implement controls related to database input validation. Which of the following best identifies the type of vulne...
- Question #995Security Operations
Which of the following activities would involve members of the incident response team and other stakeholders simulating an event?
- Question #996General security concepts
Which of the following data classifications best applies when data is intended for internal organizational use or with commercial partners?
- Question #997Security architecture
Which of the following technologies can achieve microsegmentation?
- Question #998Security program management and oversight
Which of the following metrics impacts the backup schedule as part of the BIA?
- Question #999Threats, vulnerabilities, and mitigations
A customer reports that software the customer downloaded from a public website has malware in it. However, the company that created the software denies any malware in its software...
- Question #1000Threats, vulnerabilities, and mitigations
After completing an annual external penetration test, a company receives the following guidance: - Decommission two unused web servers currently exposed to the internet. - Close 18...
- Question #1001Security Operations
Which of the following receives logs from various devices and services, and then presents alerts?
- Question #1002Threats, vulnerabilities, and mitigations
A security analyst investigates logs and notices similar data types are being sent to IP addresses with a bad reputation. Which of the following attack types does this best describ...
- Question #1003Threats, vulnerabilities, and mitigations
Which of the following describes a situation where a user is authorized before being authenticated?
- Question #1004Threats, vulnerabilities, and mitigations
An employee decides to take malicious action against an organization after being passed over for a promotion. Which of the following threats does the employee now represent?
- Question #1005General security concepts
At the start of a penetration test, the tester checks OSINT resources for information about the client environment. Which of the following types of reconnaissance is the tester per...
- Question #1006Security program management and oversight
An administrator is estimating the cost associated with an attack that could result in the replacement of a physical server. Which of the following processes is the administrator p...
- Question #1007Threats, vulnerabilities, and mitigations
A user's system became infected when malware was downloaded and extracted. The malware is now active in the computer's volatile storage. Which of the following best describes the t...
- Question #1008Threats, vulnerabilities, and mitigations
An attacker gained access to a virtual machine and was able to access the hypervisor. Which of the following describes this attack?
- Question #1009Threats, vulnerabilities, and mitigations
An administrator learns that users are receiving large quantities of unsolicited messages. The administrator checks the content filter and sees hundreds of messages sent to multipl...
- Question #1010Threats, vulnerabilities, and mitigations
Which of the following can assist in recovering data if the decryption key is lost?
- Question #1011Security Operations
A company's antivirus solution is effective in blocking malware but often has false positives. The security team has spent a significant amount of time on investigations but cannot...
- Question #1012Threats, vulnerabilities, and mitigations
Attackers created a new domain name that looks similar to a popular file-sharing website. Which of the following threat vectors is being used?
- Question #1013General security concepts
Which of the following should a technician perform to verify the integrity of a file transferred from one device to another?
- Question #1014Security Operations
During an investigation, a security analyst discovers traffic going out to a command-and-control server. The analyst must find out if any data exfiltration has occurred. Which of t...
- Question #1015Threats, vulnerabilities, and mitigations
A company discovers that an employee was paid by a competitor to save internal business files to a thumb drive and deliver it to the competitor. Which of the following is most like...
- Question #1016Security program management and oversight
Which of the following outlines the configuration, maintenance, and security roles between a cloud service provider and the customer?
- Question #1017Security architecture
SIMULATION 5 vulnerabilities exist, such as directory traversals, cross-site scripting, cross-site forgery, and insecure protocols. You are tasked with reducing the attack space an...
- Question #1018Security Operations
Which of the following non-production sites is an operational mirror of the primary data center and is ready for use if the primary data center experiences an outage?
- Question #1019Security architecture
Which of the following will harden access to a new database system? (Choose two.)
- Question #1020Threats, vulnerabilities, and mitigations
A few weeks after deploying additional email servers, a company begins to receive complaints from employees that messages they send are going into their recipients' spam folders. W...
- Question #1021CompTIA CySA+ Domain 3: Incident Response - specifically the ability to apply threat intelligence to active incidents, analyze network connections against IOC feeds, and perform targeted service-level remediation on compromised hosts while preserving business continuity.
SIMULATION 6 You are a security operations analyst for a healthcare provider. Your main job function is to compare current, high-fidelity threat intelligence feeds to activity occu...
Threat IntelligenceIncident ResponseNetwork Security MonitoringHealthcare Cybersecurity (HIPAA) - Question #1022Threats, vulnerabilities, and mitigations
A company needs to determine whether authentication weaknesses in a customer-facing web application exist. Which of the following is the best technique to use?
- Question #1023Threats, vulnerabilities, and mitigations
A systems administrator configures a new application. The next day, a security analyst reviews the logs and identifies multiple accounts that had been created overnight with admini...
- Question #1024Security Operations
An organization has been experiencing issues with deleted network share data and improperly assigned permissions. Which of the following would best help track and remediate these i...
- Question #1025Security program management and oversight
A company expects its provider to ensure servers and networks maintain 97% uptime. Which of the following would most likely list this expectation?