[Dec 04, 2021] New Real SYO-501 Exam Dumps Questions
Pass Your SYO-501 Exam Easily with Accurate CompTIA Security+ Certification Exam PDF Questions
NEW QUESTION 11
A dumpster diver was able 10 retrieve hard drives from a competitor's trash bin. After installing the and hard drives and running common date recovery software. Sensitive information was recovered. In which of the following ways did the competitor apply media sanitation?
- A. Degaussing
- B. Formatting
- C. Pulverizing
- D. Encrypting
Answer: A
NEW QUESTION 12
A computer on a company network was infected with a zero-day exploit after an employee accidently opened an email that contained malicious content. The employee recognized the email as malicious and was attempting to delete it, but accidently opened it.
Which of the following should be done to prevent this scenario from occurring again in the future?
- A. Set the email program default to open messages in plain text
- B. Install host-based firewalls on all computers that have an email client installed
- C. Create new email spam filters to delete all messages from that sender
- D. Install end-point protection on all computers that access web email
Answer: A
NEW QUESTION 13
A systems engineer wants to leverage a cloud-based architecture with low latency between network-connected devices that also reduces the bandwidth that is required by performing analytics directly on the endpoints. Which of the following would BEST meet the requirements? (Select TWO).
- A. Fog computing
- B. laaS
- C. SaaS
- D. Private cloud
- E. DRaaS
- F. Hybrid cloud
Answer: A,F
NEW QUESTION 14
Drag and Drop Question
A security auditor is reviewing the following output from file integrity monitoring software installed on a very busy server at a large service provider. The server has not been updates since it was installed. Drag and drop the log entry that identifies the first instance of server compromise.
Answer:
Explanation:
NEW QUESTION 15
A systems administrator is installing a new server in a large datacenter. Which of the following BEST describes the importance of properly positioning servers in the rack to maintain availability?
- A. To maximize the fire suppression system's efficiency
- B. To adhere to cable management standards
- C. To allow for visibility of the servers' status indicators
- D. To provide consistent air flow
Answer: D
NEW QUESTION 16
An organization has the following written policies:
Users must request approval for non-standard software installation.
Administrators will perform all software installations.
Software must be installed from a trusted repository.
A recent security audit identified crypto-currency software installed on one user's machine. There are no indications of compromise on this machine. Which of the following is the MOST likely cause of this policy violation and the BEST remediation to prevent a reoccurrence?
- A. The user installed the software on the machine; implement technical controls to enforce the written policies
- B. The crypto-currency software was misidentified and is authorized; add the software to the organization's approved list
- C. The user's machine was infected with malware; implement the organization's incident response
- D. Administrators downloaded the software from an untrusted repository; add a policy that requires integrity checking for all software.
Answer: A
NEW QUESTION 17
A systems administrator just issued the ssh-keygen -t rsa command on a Linux terminal Which of the following BEST describes what the rsa portion of the command represents?
- A. A certificate authority type
- B. A public key infrastructure type
- C. A hashing algorithm
- D. A key generation algorithm
Answer: D
NEW QUESTION 18
Which of the following is the purpose of a risk register?
- A. To identify the risk, the risk owner and the risk measures
- B. To register the risk with the required regulatory agencies
- C. To formally log the type of risk mitigation strategy the organization is using
- D. To define the level or risk using probability and likelihood
Answer: C
NEW QUESTION 19
A technician is investigating a report of unusual behavior and slow performance on a company-owned laptop. The technician runs a command and reviews the following information:
Based on the above information, which of the following types of malware should the technician report?
- A. Rootkit
- B. Logic bomb
- C. Spyware
- D. RAT
Answer: C
NEW QUESTION 20
An auditor is reviewing the following output from a password-cracking tool:
Which of the following methods did the author MOST likely use?
- A. Hybrid
- B. Brute force
- C. Rainbow table
- D. Dictionary
Answer: A
NEW QUESTION 21
A security administrator is reviewing the following information from a file that was found on a compromised host:
Which of the following types of malware is MOST likely installed on the compromised host?
- A. Trojan
- B. Keylogger
- C. Backdoor
- D. Spyware
- E. Rootkit
Answer: A
NEW QUESTION 22
For each of the given items, select the appropriate authentication category from the dropdown choices.
Instructions: When you have completed the simulation, please select the Done button to submit.
Answer:
Explanation:
Explanation:
Something you are includes fingerprints, retina scans, or voice recognition.
Something you have includes smart cards, token devices, or keys.
Something you know includes a password, codes, PINs, combinations, or secret phrases. Somewhere you are including a physical location s or logical addresses, such as domain name, an IP address, or a MAC address.
Something you do includes your typing rhythm, a secret handshake, or a private knock http://en.wikipedia.org/wiki/Password_authentication_protocol#Working_cycle http://en.wikipedia.org/wiki/Smart_card#Security
NEW QUESTION 23
Which of the following attack types BEST describes a client-side attack that is used to mandate an HTML iframe with JavaScript code via web browser?
- A. MITM
- B. Buffer overflow
- C. SQLi
- D. xss
Answer: D
NEW QUESTION 24
Ann, an employee in the payroll department, has contacted the help desk citing multiple issues with her device, including:
Slow performance
Word documents, PDFs, and images no longer opening
A pop-up
Ann states the issues began after she opened an invoice that a vendor emailed to her.
Upon opening the invoice, she had to click several security warnings to view it in her word processor.
With which of the following is the device MOST likely infected?
- A. Backdoor
- B. Spyware
- C. Rootkit
- D. Crypto-malware
Answer: D
Explanation:
She is not able to open files -> coz the are encrypted. Slow performance coz it takes lots of cpu power to encrypt stuff. Pop up probably displays the h4x0r's btc address Spyware, rootkit or backdoor supposed to be stealth so no popups.
NEW QUESTION 25
A security analyst is reviewing the following output from an IPS:
Given this output, which of the following can be concluded? (Select two.)
- A. The attacker sent a malformed TCP packet, triggering the alert.
- B. The source IP of the attack is coming from 250.19.18.22.
- C. The TTL value is outside of the expected range, triggering the alert.
- D. The source IP of the attack is coming from 250.19.18.71.
- E. The attacker sent a malformed IGAP packet, triggering the alert.
Answer: D,E
NEW QUESTION 26
An organization finds that most help desk calls ate regarding account lockout due to a variety of applications running on different systems.
Manager is looking for a solution to reduce the number of account lockouts while improving security.
Which of the following is the BEST solution for this organization?
- A. Implement SSO.
- B. Provide secure tokens.
- C. Utilize role-based access control.
- D. Create multiple application accounts for each user.
Answer: A
NEW QUESTION 27
A consultant has been tasked to assess a client's network. The client reports frequent network outages. Upon viewing the spanning tree configuration, the consultant notices that an old and law performing edge switch on the network has been elected to be the root bridge. Which of the following explains this scenario?
- A. The switch has the lowest MAC address
- B. The switch has spanning tree loop protection enabled
- C. The switch also serves as the DHCP server
- D. The switch has the fastest uplink port
Answer: B
NEW QUESTION 28
An information security specialist is reviewing the following output from a Linux server.
Based on the above information, which of the following types of malware was installed on the server?
- A. Backdoor
- B. Trojan
- C. Rootkit
- D. Logic bomb
- E. Ransomware
Answer: A
NEW QUESTION 29
An incident responder is preparing to acquire images and files from a workstation that has been compromised.
The workstation is still powered on and running. Which of the following should be acquired LAST?
- A. Processor cache
- B. Processes in running memory
- C. Swap space
- D. Application files on hard disk
Answer: B
NEW QUESTION 30
Hotspot Question
A newly purchased corporate WAP needs to be configured in the MOST secure manner possible.
INSTRUCTIONS
Please click on the below items on the network diagram and configure them accordingly:
WAP
DHCP Server
AAA Server
Wireless Controller
LDAP Server
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.

Answer:
Explanation:
NEW QUESTION 31
During an application design, the development team specifics a LDAP module for single sign-on communication with the company's access control database.
This is an example of which of the following?
- A. Application control
- B. Identification
- C. Authentication
- D. Data in-transit
Answer: C
NEW QUESTION 32
......
SYO-501 Certification Exam Dumps Questions in here: https://drive.google.com/open?id=1L6UD_ucUoEyBtddi419wPfb-dO6wbLSf
Updated SYO-501 Exam Practice Test Questions: https://www.prep4pass.com/SYO-501_exam-braindumps.html
