Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the CompTIA CompTIA Security+ SY0-701 Questions and answers with CertsForce

Viewing page 6 out of 14 pages
Viewing questions 101-120 out of questions
Questions # 101:

The security operations center is researching an event concerning a suspicious IP address A security analyst looks at the following event logs and discovers that a significant portion of the user accounts have experienced faded log-In attempts when authenticating from the same IP address:

Question # 101

Which of the following most likely describes attack that took place?

Options:

A.

Spraying


B.

Brute-force


C.

Dictionary


D.

Rainbow table


Expert Solution
Questions # 102:

A penetration tester begins an engagement by performing port and service scans against the client environment according to the rules of engagement. Which of the following reconnaissance types is the tester performing?

Options:

A.

Active


B.

Passive


C.

Defensive


D.

Offensive


Expert Solution
Questions # 103:

An organization needs to monitor its users ' activities to prevent insider threats. Which of the following solutions would help the organization achieve this goal?

Options:

A.

Behavioral analytics


B.

Access control lists


C.

Identity and access management


D.

Network intrusion detection system


Expert Solution
Questions # 104:

An organization is looking to optimize its environment and reduce the number of patches necessary for operating systems. Which of the following will best help to achieve this objective?

Options:

A.

Microservices


B.

Virtualization


C.

Real-time operating system


D.

Containers


Expert Solution
Questions # 105:

An attacker uses XSS to compromise a web server. Which of the following solutions could have been used to prevent this attack?

Options:

A.

NGFW


B.

UTM


C.

WAF


D.

NAC


Expert Solution
Questions # 106:

An attorney prints confidential documents to a copier in an office space near multiple workstations and a reception desk. When the attorney goes to the copier to retrieve the documents, the documents are missing. Which of the following would best prevent this from reoccurring?

Options:

A.

Place the copier in the legal department.


B.

Configure DLP on the attorney ' s workstation.


C.

Set up LDAP authentication on the printer.


D.

Conduct a physical penetration test.


Expert Solution
Questions # 107:

Which of the following best describes the importance of implementing filesystem journaling?

Options:

A.

Replication to a secondary form of media reduces the risk of failure when the secondary media is remote.


B.

The recovery time always exceeds the RTO and RPO requirements during system downtime.


C.

A point-in-time backup provides faster data recovery if data on a disk is corrupted.


D.

A log of changes can enable recovery to a desired state after a failure.


Expert Solution
Questions # 108:

A security analyst reviews logs and finds a large number of malicious requests that have caused performance issues on the company ' s site. Which of the following would have most likely prevented this attack?

Options:

A.

IPSec


B.

TLS


C.

SDN


D.

WAF


Expert Solution
Questions # 109:

Which of the following explains how regular patching helps mitigate risks when securing an enterprise environment?

Options:

A.

It improves server performance by reducing software bugs.


B.

It addresses known software vulnerabilities before they are exploited.


C.

It eliminates the need for firewalls and intrusion detection.


D.

It removes the need for antivirus tools.


Expert Solution
Questions # 110:

A security administrator protects passwords by using hashing. Which of the following best describes what the administrator is doing?

Options:

A.

Adding extra characters at the end to increase password length


B.

Generating a token to make the passwords temporal


C.

Using mathematical algorithms to make passwords unique


D.

Creating a rainbow table to protect passwords in a list


Expert Solution
Questions # 111:

During a risk treatment exercise, an administrator discovers a risk that cannot be mitigated. Which of the following best describes this situation?

Options:

A.

Residual risk


B.

Risk appetite


C.

Reviewed risk


D.

Risk register


Expert Solution
Questions # 112:

A company relies on open-source software libraries to build the software used by its customers. Which of the following vulnerability types would be the most difficult to remediate due to the company ' s reliance on open-source libraries?

Options:

A.

Buffer overflow


B.

SQL injection


C.

Cross-site scripting


D.

Zero day


Expert Solution
Questions # 113:

An analyst is reviewing an incident in which a user clicked on a link in a phishing email. Which of the following log sources would the analyst utilize to determine whether the connection was successful?

Options:

A.

Network


B.

System


C.

Application


D.

Authentication


Expert Solution
Questions # 114:

Which of the following is an algorithm performed to verify that data has not been modified?

Options:

A.

Hash


B.

Code check


C.

Encryption


D.

Checksum


Expert Solution
Questions # 115:

A systems administrator just purchased multiple network devices. Which of the following should the systems administrator perform to prevent attackers from accessing the devices by using publicly available information?

Options:

A.

Install endpoint protection


B.

Disable ports/protocols


C.

Change default passwords


D.

Remove unnecessary software


Expert Solution
Questions # 116:

A security engineer receives reports of unauthorized devices on the organization ' s network. Which of the following best describes a secure and effective way to mitigate the risks?

Options:

A.

Deploy a NAC solution to block wireless connections until devices can be verified against the baseline configuration.


B.

Set the NAC solution to only accept handshakes initiated from a static set of IP addresses.


C.

Configure a NAC solution to enforce 802.1X authentication with device certificates and implement endpoint security checks.


D.

Implement a NAC solution that redirects all devices to the guest Wi-Fi for holding until a security analyst can validate the security compliance.


Expert Solution
Questions # 117:

A company wants to protect a specialized legacy platform that controls the physical flow of gas inside of pipes. Which of the following environments does the company need to secure to best achieve this goal?

Options:

A.

IaaS


B.

SCADA


C.

SDN


D.

IoT


Expert Solution
Questions # 118:

A security administrator recently reset local passwords and the following values were recorded in the system:

Question # 118

Which of the following in the security administrator most likely protecting against?

Options:

A.

Account sharing


B.

Weak password complexity


C.

Pass-the-hash attacks


D.

Password compromise


Expert Solution
Questions # 119:

A company makes a change during the appropriate change window, but the unsuccessful change extends beyond the scheduled time and impacts customers. Which of the following would prevent this from reoccurring?

Options:

A.

User notification


B.

Change approval


C.

Risk analysis


D.

Backout plan


Expert Solution
Questions # 120:

A company ' s online shopping website became unusable shortly after midnight on January 30, 2023. When a security analyst reviewed the database server, the analyst noticed the following code used for backing up data:

Which of the following should the analyst do next?

Options:

A.

Check for recently terminated DBAs.


B.

Review WAF logs for evidence of command injection.


C.

Scan the database server for malware.


D.

Search the web server for ransomware notes.


Expert Solution
Viewing page 6 out of 14 pages
Viewing questions 101-120 out of questions