SY0-701 Exam Questions
1,057 real SY0-701 exam questions with expert-verified answers and explanations. Page 3 of 22.
- Question #101Security architecture
An organization is struggling with scaling issues on its VPN concentrator and internet circuit due to remote work. The organization is looking for a software solution that will all...
- Question #102Threats, vulnerabilities, and mitigations
A company's end users are reporting that they are unable to reach external websites. After reviewing the performance data for the DNS severs, the analyst discovers that the CPU, di...
- Question #103Security architecture
A systems administrator wants to prevent users from being able to access data based on their responsibilities. The administrator also wants to apply the required access structure v...
- Question #104Threats, vulnerabilities, and mitigations
One of a company's vendors sent an analyst a security bulletin that recommends a BIOS update. Which of the following vulnerability types is being addressed by the patch?
- Question #105Security Operations
A security analyst locates a potentially malicious video file on a server and needs to identify both the creation date and the file's creator. Which of the following actions would...
- Question #106Threats, vulnerabilities, and mitigations
After a recent vulnerability scan, a security engineer needs to harden the routers within the corporate network. Which of the following is the most appropriate to disable?
- Question #107Security Operations
Which of the following should a systems administrator use to ensure an easy deployment of resources within the cloud provider?
- Question #108Threats, vulnerabilities, and mitigations
An enterprise has been experiencing attacks focused on exploiting vulnerabilities in older browser versions with well-known exploits. Which of the following security solutions shou...
- Question #109Security architecture
During the onboarding process, an employee needs to create a password for an intranet account. The password must include ten characters, numbers, and letters, and two special chara...
- Question #110Security Operations
An administrator is reviewing a single server's security logs and discovers the following; Which of the following best describes the action captured in this log file?
- Question #111Security architecture
A security engineer is implementing FDE for all laptops in an organization. Which of the following are the most important for the engineer to consider as part of the planning proce...
- Question #112Threats, vulnerabilities, and mitigations
A hacker gained access to a system via a phishing attempt that was a direct result of a user clicking a suspicious link. The link laterally deployed ransomware, which laid dormant...
- Question #113Threats, vulnerabilities, and mitigations
Which of the following threat actors is the most likely to be hired by a foreign government to attack critical systems located in other countries?
- Question #114General security concepts
Which of the following is used to add extra complexity before using a one-way data transformation algorithm?
- Question #115Threats, vulnerabilities, and mitigations
An employee clicked a link in an email from a payment website that asked the employee to update contact information. The employee entered the log-in information but received a "pag...
- Question #116Security architecture
An enterprise is trying to limit outbound DNS traffic originating from its internal network. Outbound DNS requests will only be allowed from one device with the IP address 10.50.10...
- Question #117Security architecture
A data administrator is configuring authentication for a SaaS application and would like to reduce the number of credentials employees need to maintain. The company prefers to use...
- Question #118Threats, vulnerabilities, and mitigations
Which of the following scenarios describes a possible business email compromise attack?
- Question #119Security architecture
A company prevented direct access from the database administrators' workstations to the network segment that contains database servers. Which of the following should a database adm...
- Question #120Threats, vulnerabilities, and mitigations
An organization's internet-facing website was compromised when an attacker exploited a buffer overflow. Which of the following should the organization deploy to best protect agains...
- Question #121Threats, vulnerabilities, and mitigations
An administrator notices that several users are logging in from suspicious IP addresses. After speaking with the users, the administrator determines that the employees were not log...
- Question #122Threats, vulnerabilities, and mitigations
An employee receives a text message that appears to have been sent by the payroll department and is asking for credential verification. Which of the following social engineering te...
Social EngineeringSmishingImpersonation - Question #123Threats, vulnerabilities, and mitigations
Several employees received a fraudulent text message from someone claiming to be the Chief Executive Officer (CEO). The message stated: "I'm in an airport right now with no access...
- Question #124Security Operations
An organization wants a third-party vendor to do a penetration test that targets a specific device. The organization has provided basic information about the device. Which of the f...
- Question #125Threats, vulnerabilities, and mitigations
An attacker posing as the Chief Executive Officer calls an employee and instructs the employee to buy gift cards. Which of the following techniques is the attacker using?
- Question #126Security architecture
An analyst is evaluating the implementation of Zero Trust principles within the data plane. Which of the following would be most relevant for the analyst to evaluate?
- Question #127General security concepts
An organization is leveraging a VPN between its headquarters and a branch location. Which of the following is the VPN protecting?
- Question #128Threats, vulnerabilities, and mitigations
The marketing department set up its own project management software without telling the appropriate departments. Which of the following describes this scenario?
- Question #129Threats, vulnerabilities, and mitigations
A company wants to verify that the software the company is deploying came from the vendor the company purchased the software from. Which of the following is the best way for the co...
- Question #130Security architecture
After a security incident, a systems administrator asks the company to buy a NAC platform. Which of the following attack surfaces is the systems administrator trying to protect?
- Question #131Security program management and oversight
Which of the following factors are the most important to address when formulating a training curriculum plan for a security awareness program? (Select two).
- Question #132Threats, vulnerabilities, and mitigations
An organization disabled unneeded services and placed a firewall in front of a business-critical legacy system. Which of the following best describes the actions taken by the organ...
- Question #133Threats, vulnerabilities, and mitigations
A company is required to use certified hardware when building networks. Which of the following best addresses the risks associated with procuring counterfeit hardware?
- Question #134Security program management and oversight
Which of the following provides the details about the terms of a test with a third-party penetration tester?
- Question #135Security Operations
A penetration tester begins an engagement by performing port and service scans against the client environment according to the rules of engagement. Which of the following reconnais...
- Question #136Security program management and oversight
Which of the following is required for an organization to properly manage its restore process in the event of system failure?
- Question #137Threats, vulnerabilities, and mitigations
Which of the following vulnerabilities is associated with installing software outside of a manufacturer's approved software repository?
- Question #138Threats, vulnerabilities, and mitigations
A security analyst is reviewing the following logs: Which of the following attacks is most likely occurring?
- Question #139Security Operations
A systems administrator receives the following alert from a file integrity monitoring tool: The hash of the cmd.exe file has changed. The systems administrator checks the OS logs a...
- Question #140Security architecture
An engineer needs to find a solution that creates an added layer of security by preventing unauthorized access to internal company resources. Which of the following would be the be...
- Question #142Security Operations
During a security incident, the security operations team identified sustained network traffic from a malicious IP address: 10.1.4.9. A security analyst is creating an inbound firew...
- Question #143Security architecture
A company needs to provide administrative access to internal resources while minimizing the traffic allowed through the security boundary. Which of the following methods is most se...
- Question #144Security program management and oversight
Which of the following is the most likely to be used to document risks, responsible parties, and thresholds?
- Question #145Security operations
Which of the following should a security administrator adhere to when setting up a new set of firewall rules?
Change managementFirewall administrationSecurity proceduresOperational security - Question #146Security program management and oversight
A company is expanding its threat surface program and allowing individuals to security test the company's internet-facing application. The company will compensate researchers based...
- Question #147Threats, vulnerabilities, and mitigations
Which of the following threat actors is the most likely to use large financial resources to attack critical systems located in other countries?
- Question #148Threats, vulnerabilities, and mitigations
Which of the following enables the use of an input field to run commands that can view or manipulate data?
- Question #149General security concepts
Employees in the research and development business unit receive extensive training to ensure they understand how to best protect company data. Which of the following is the type of...
- Question #150Security Operations
A company has begun labeling all laptops with asset inventory stickers and associating them with employee IDs. Which of the following security benefits do these actions provide? (C...
Asset ManagementIncident ResponseEmployee OffboardingData Accountability - Question #151Security program management and oversight
A technician wants to improve the situational and environmental awareness of existing users as they transition from remote to in-office work. Which of the following is the best opt...