CompTIA SY0-501 Exam Video

Security+ (Plus) Certification | CompTIA IT Certifications: https://www.comptia.org/certifications/security

The CompTIA Security+ exam will certify the successful candidate has the knowledge and skills required to install and configure systems
to secure applications, networks, and devices; perform threat analysis and respond with appropriate mitigation techniques; participate in risk mitigation activities; and operate with an awareness of applicable policies, laws, and regulations. The successful candidate will perform these tasks to support the principles of confidentiality, integrity, and availability.

Latest updates CompTIA SY0-501 exam practice questions

A company\\’s user lockout policy is enabled after five unsuccessful login attempts. The help desk notices a user is
repeatedly locked out over the course of a workweek. Upon contacting the user, the help desk discovers the user is on
vacation and does not have network access. Which of the following types of attacks is MOST likely occurring? (Select
A. Replay
B. Rainbow tables
C. Brute force
D. Pass the hash
E. Dictionary
Correct Answer: CE


Drag the items on the left to show the different types of security for the shown devices. Not all fields need to be filled.
Not all items need to be used.
Select and Place:newpdfebooks sy0-501 exam questions q2

Correct Answer:

newpdfebooks sy0-501 exam questions q2-1

For mobile devices, at a bare minimum, you should have the following security measures in place: Screen lock, Strong
password, Device encryption, Remote wipe/Sanitation, voice encryption, GPS tracking, Application control, Storage
segmentation, Asset tracking as well as Device Access control.
For servers in a data center your security should include: Fire extinguishers such as FM200 as part of fire suppression;
Biometric, proximity badges, mantraps, HVAC, cable locks;
these can all be physical security measures to control access to the server.
Dulaney, Emmett and Chuck Easton, CompTIA Security+ Study Guide, 6th Edition, Sybex, Indianapolis, 2014, p. 418


A security analyst is hardening an authentication server. One of the primary requirements is to ensure there is mutual
authentication and delegation. Given these requirements, which of the following technologies should the analyst
recommend and configure?
A. LDAP services
B. Kerberos services
C. NTLM services
D. CHAP services
Correct Answer: B
Only Kerberos can do Mutual Auth and Delegation.


A vice president at a manufacturing organization is concerned about desktops being connected to the network.
Employees need to log onto the desktops\\’ local account to verify that a product is being created within specifications;
otherwise, the desktops should be as isolated as possible. Which of the following is the BEST way to accomplish this?
A. Put the desktops in the DMZ.
B. Create a separate VLAN for the desktops.
C. Air gap the desktops.
D. Join the desktops to an ad-hoc network.
Correct Answer: C


The Chief Executive Officer (CEO) of a major defense contracting company a traveling overseas for a conference. The CEO will be taking a laptop.
Which of the following should the security administrator implement to ensure confidentiality of the data if the laptop were
to be stolen or lost during the trip?
A. Remote wipe
B. Full device encryption
C. BIOS password
D. GPS tracking
Correct Answer: B


The Chief Technology Officer (CTO) of a company, Ann, is putting together a hardware budget for the next 10 years.
She is asking for the average lifespan of each hardware device so that she is able to calculate when she will have to
replace each device.
Which of the following categories does BEST describe what she is looking for?
Correct Answer: D


A security administrator receives an alert from a third-party vendor that indicates a certificate that was installed in the browser has been hijacked at the root of a small public CA. The security administrator knows there are at least four
different browsers in use on more than a thousand computers in the domain worldwide.
Which of the following solutions would be BEST for the security administrator to implement to most efficiently assist with
this issue?
Correct Answer: B


Drag and drop the correct protocol to its default port.
Select and Place:newpdfebooks sy0-501 exam questions q8

Correct Answer:

newpdfebooks sy0-501 exam questions q8-1

FTP uses TCP port 21.
Telnet uses port 23.
SSH uses TCP port 22. All protocols encrypted by SSH, including SFTP, SHTTP, SCP, SExec, and slogan, also use
TCP port 22. Secure Copy Protocol (SCP) is a secure file-transfer facility based on SSH and Remote Copy Protocol
Secure FTP (SFTP) is a secured alternative to standard File Transfer Protocol (FTP).
SMTP uses TCP port 25.
Port 69 is used by TFTP.
SNMP makes use of UDP ports 161 and 162.
Stewart, James Michael, CompTIA Security+ Review Guide, Sybex, Indianapolis, 2014, pp. 42, 45, 51


A security technician has been given the task of preserving emails that are potentially involved in a dispute between a
company and a contractor.
Which of the following BEST describes this forensic concept?
A. Legal hold
B. Chain of custody
C. Order of volatility
D. Data acquisition
Correct Answer: A


A security analyst is performing a quantitative risk analysis. The risk analysis should show the potential monetary loss
each time a threat or event occurs. Given this requirement, which of the following concepts would assist the analyst in
determining this value? (Select two.)
Correct Answer: AC


Phishing emails frequently take advantage of high-profile catastrophes reported in the news. Which of the following
principles BEST describe the weakness being exploited?
A. Intimidation
B. Scarcity
C. Authority
D. Social proof
Correct Answer: D


Which of the following is the proper order for logging a user into a system from the first step to the last step?
A. Identification, authentication, authorization
B. Identification, authorization, authentication
C. Authentication, identification, authorization
D. Authentication, identification, authorization
E. Authorization, identification, authentication
Correct Answer: A


While reviewing the security controls in place for a web-based application, security controls assessor notices that
there are no password strength requirements in place. Because of this vulnerability, passwords might be easily
discovered using a brute force attack.
Which of the following password requirements will MOST effectively improve the security posture of the application
against these attacks? (Select two)
A. Minimum complexity
B. Maximum age limit
C. Maximum length
D. Minimum length
E. Minimum age limit
F. Minimum re-use limit
Correct Answer: AD

