Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the CompTIA CompTIA Security+ SY0-701 Questions and answers with CertsForce

Viewing page 8 out of 14 pages
Viewing questions 141-160 out of questions
Questions # 141:

A company has begun labeling all laptops with asset inventory stickers and associating them with employee IDs. Which of the following security benefits do these actions provide? (Choose two.)

Options:

A.

If a security incident occurs on the device, the correct employee can be notified.


B.

The security team will be able to send user awareness training to the appropriate device.


C.

Users can be mapped to their devices when configuring software MFA tokens.


D.

User-based firewall policies can be correctly targeted to the appropriate laptops.


E.

When conducting penetration testing, the security team will be able to target the desired laptops.


F.

Company data can be accounted for when the employee leaves the organization.


Expert Solution
Questions # 142:

Which of the following data states applies to data that is being actively processed by a database server?

Options:

A.

In use


B.

At rest


C.

In transit


D.

Being hashed


Expert Solution
Questions # 143:

A new security regulation was announced that will take effect in the coming year. A company must comply with it to remain in business. Which of the following activities should the company perform next?

Options:

A.

Gap analysis


B.

Policy review


C.

Security procedure evaluation


D.

Threat scope reduction


Expert Solution
Questions # 144:

A cybersecurity incident response team at a large company receives notification that malware is present on several corporate desktops No known Indicators of compromise have been found on the network. Which of the following should the team do first to secure the environment?

Options:

A.

Contain the Impacted hosts


B.

Add the malware to the application blocklist.


C.

Segment the core database server.


D.

Implement firewall rules to block outbound beaconing


Expert Solution
Questions # 145:

Which of the following agreements defines response time, escalation, and performance metrics?

Options:

A.

BPA


B.

MOA


C.

NDA


D.

SLA


Expert Solution
Questions # 146:

Which of the following concepts protects sensitive information from unauthorized disclosure?

Options:

A.

Integrity


B.

Availability


C.

Authentication


D.

Confidentiality


Expert Solution
Questions # 147:

Which of the following should be used to ensure that a new software release has not been modified before reaching the user?

Options:

A.

Tokenization


B.

Encryption


C.

Hashing


D.

Obfuscation


Expert Solution
Questions # 148:

A systems administrator set up a perimeter firewall but continues to notice suspicious connections between internal endpoints. Which of the following should be set up in order to mitigate the threat posed by the suspicious activity?

Options:

A.

Host-based firewall


B.

Web application firewall


C.

Access control list


D.

Application allow list


Expert Solution
Questions # 149:

Which of the following best explains the benefit of using asymmetric encryption?

Options:

A.

It provides mutual authentication by using identical keys for both encryption and decryption.


B.

It uses a shared secret key to reduce the number of keys needed.


C.

It allows faster encryption and decryption than symmetric methods.


D.

It enables secure data exchanges without requiring both parties to share a private key.


Expert Solution
Questions # 150:

A security consultant is working with a client that wants to physically isolate its secure systems. Which of the following best describes this architecture?

Options:

A.

SDN


B.

Air gapped


C.

Containerized


D.

Highly available


Expert Solution
Questions # 151:

An IT manager is putting together a documented plan describing how the organization will keep operating in the event of a global incident. Which of the following plans is the IT manager creating?

Options:

A.

Business continuity


B.

Physical security


C.

Change management


D.

Disaster recovery


Expert Solution
Questions # 152:

Which of the following describes effective change management procedures?

Options:

A.

Approving the change after a successful deployment


B.

Having a backout plan when a patch fails


C.

Using a spreadsheet for tracking changes


D.

Using an automatic change control bypass for security updates


Expert Solution
Questions # 153:

During a routine audit, an analyst discovers that a department uses software that was not vetted. Which threat is this?

Options:

A.

Espionage


B.

Data exfiltration


C.

Shadow IT


D.

Zero-day


Expert Solution
Questions # 154:

Which of the following would be the best ways to ensure only authorized personnel can access a secure facility? (Select two).

Options:

A.

Fencing


B.

Video surveillance


C.

Badge access


D.

Access control vestibule


E.

Sign-in sheet


F.

Sensor


Expert Solution
Questions # 155:

A security team is setting up a new environment for hosting the organization ' s on-premises software application as a cloud-based service. Which of the following should the team ensure is in place in order for the organization to follow security best practices?

Options:

A.

Visualization and isolation of resources


B.

Network segmentation


C.

Data encryption


D.

Strong authentication policies


Expert Solution
Questions # 156:

A software company currently secures access using a combination of traditional username/password configurations and one-time passwords for MFA. However, employees still struggle to maintain both a password manager and the authenticator application. The company wants to migrate to a single, integrated authentication solution that is more secure and provides a smoother login experience for its employees. Which of the following solutions will best satisfy the company ' s needs?

Options:

A.

Migrating to FIDO2 passkeys, utilizing built-in device biometrics for user authentication


B.

Implementing SMS-based one-time passwords as the primary second factor for all logins


C.

Implementing SAML federation across authentication servers so employees can use SSO to access applications


D.

Deploying a PKI system that requires all employees to use smart cards for login access


Expert Solution
Questions # 157:

A company is developing a business continuity strategy and needs to determine how many staff members would be required to sustain the business in the case of a disruption. Which of the following best describes this step?

Options:

A.

Capacity planning


B.

Redundancy


C.

Geographic dispersion


D.

Tablet exercise


Expert Solution
Questions # 158:

A user would like to install software and features that are not available with a smartphone ' s default software. Which of the following would allow the user to install unauthorized software and enable new features?

Options:

A.

SOU


B.

Cross-site scripting


C.

Jailbreaking


D.

Side loading


Expert Solution
Questions # 159:

A security practitioner completes a vulnerability assessment on a company’s network and finds several vulnerabilities, which the operations team remediates. Which of the following should be done next?

Options:

A.

Conduct an audit.


B.

Initiate a penetration test.


C.

Rescan the network.


D.

Submit a report.


Expert Solution
Questions # 160:

A systems administrator creates a script that validates OS version, patch levels, and installed applications when users log in. Which of the following examples best describes the purpose of this script?

Options:

A.

Resource scaling


B.

Policy enumeration


C.

Baseline enforcement


D.

Guardrails implementation


Expert Solution
Viewing page 8 out of 14 pages
Viewing questions 141-160 out of questions