Examcollection offers free demo for SY0-601 exam. "CompTIA Security+ Exam", also known as SY0-601 exam, is a CompTIA Certification. This set of posts, Passing the CompTIA SY0-601 exam, will help you answer those questions. The SY0-601 Questions & Answers covers all the knowledge points of the real exam. 100% real CompTIA SY0-601 exams and revised by experts!
CompTIA SY0-601 Free Dumps Questions Online, Read and Test Now.
NEW QUESTION 1
Which of the following would be the BEST method for creating a detailed diagram of wireless access points and hot-spots?
- A. Footprinting
- B. White-box testing
- C. A drone/UAV
- D. Pivoting
Answer: A
NEW QUESTION 2
A security analyst has received an alert about being sent via email. The analyst’s Chief information Security Officer (CISO) has made it clear that PII must be handle with extreme care From which of the following did the alert MOST likely originate?
- A. S/MIME
- B. DLP
- C. IMAP
- D. HIDS
Answer: B
NEW QUESTION 3
A network technician is installing a guest wireless network at a coffee shop. When a customer purchases an Item, the password for the wireless network is printed on the recent so the customer can log in. Which of the following will the technician MOST likely configure to provide the highest level of security with the least amount of overhead?
- A. WPA-EAP
- B. WEP-TKIP
- C. WPA-PSK
- D. WPS-PIN
Answer: A
NEW QUESTION 4
In which of the following risk management strategies would cybersecurity insurance be used?
- A. Transference
- B. Avoidance
- C. Acceptance
- D. Mitigation
Answer: A
NEW QUESTION 5
An organization is developing a plan in the event of a complete loss of critical systems and data. Which of the following plans is the organization MOST likely developing?
- A. Incident response
- B. Communications
- C. Disaster recovery
- D. Data retention
Answer: C
NEW QUESTION 6
An organization has hired a security analyst to perform a penetration test. The analyst captures 1Gb worth of inbound network traffic to the server and transfer the pcap back to the machine for analysis. Which of the following tools should the analyst use to further review the pcap?
- A. Nmap
- B. cURL
- C. Netcat
- D. Wireshark
Answer: D
NEW QUESTION 7
A Chief Information Security Officer (CISO) needs to create a policy set that meets international standards for data privacy and sharing. Which of the following should the CISO read and understand before writing the policies?
- A. PCI DSS
- B. GDPR
- C. NIST
- D. ISO 31000
Answer: B
NEW QUESTION 8
A symmetric encryption algorithm Is BEST suited for:
- A. key-exchange scalability.
- B. protecting large amounts of data.
- C. providing hashing capabilities,
- D. implementing non-repudiation.
Answer: D
NEW QUESTION 9
Which of the following are the MOST likely vectors for the unauthorized inclusion of vulnerable code in a software company’s final software releases? (Select TWO.)
- A. Unsecure protocols
- B. Use of penetration-testing utilities
- C. Weak passwords
- D. Included third-party libraries
- E. Vendors/supply chain
- F. Outdated anti-malware software
Answer: AD
NEW QUESTION 10
An organization just experienced a major cyberattack modem. The attack was well coordinated sophisticated and highly skilled. Which of the following targeted the organization?
- A. Shadow IT
- B. An insider threat
- C. A hacktivist
- D. An advanced persistent threat
Answer: D
NEW QUESTION 11
Several employees return to work the day after attending an industry trade show. That same day, the security manager notices several malware alerts coming from each of the employee’s workstations. The security manager investigates but finds no signs of an attack on the perimeter firewall or the NIDS. Which of the following is MOST likely causing the malware alerts?
- A. A worm that has propagated itself across the intranet, which was initiated by presentation media
- B. A fileless virus that is contained on a vCard that is attempting to execute an attack
- C. A Trojan that has passed through and executed malicious code on the hosts
- D. A USB flash drive that is trying to run malicious code but is being blocked by the host firewall
Answer: A
NEW QUESTION 12
An analyst needs to set up a method for securely transferring files between systems. One of the requirements is to authenticate the IP header and the payload. Which of the following services would BEST meet the criteria?
- A. TLS
- B. PFS
- C. ESP
- D. AH
Answer: A
NEW QUESTION 13
An organization’s help desk is flooded with phone calls from users stating they can no longer access certain websites. The help desk escalates the issue to the security team, as these websites were accessible the previous day. The security analysts run the following command: ipconfig /flushdns, but the issue persists. Finally, an analyst changes the DNS server for an impacted machine, and the issue goes away. Which of the following attacks MOST likely occurred on the original DNS server?
- A. DNS cache poisoning
- B. Domain hijacking
- C. Distributed denial-of-service
- D. DNS tunneling
Answer: B
NEW QUESTION 14
A company recently set up an e-commerce portal to sell its product online. The company wants to start accepting credit cards for payment, which requires compliance with a security standard. Which of the following standards must the company comply with before accepting credit cards on its e-commerce platform?
- A. PCI DSS
- B. ISO 22301
- C. ISO 27001
- D. NIST CSF
Answer: A
NEW QUESTION 15
A security analyst needs to complete an assessment. The analyst is logged into a server and must use native tools to map services running on it to the server's listening ports. Which of the following tools can BEST accomplish this talk?
- A. Netcat
- B. Netstat
- C. Nmap
- D. Nessus
Answer: B
NEW QUESTION 16
The manager who is responsible for a data set has asked a security engineer to apply encryption to the data on a hard disk. The security engineer is an example of a:
- A. data controller.
- B. data owner
- C. data custodian.
- D. data processor
Answer: D
NEW QUESTION 17
Which of the following will provide the BEST physical security countermeasures to stop intruders? (Select TWO.)
- A. Alarms
- B. Signage
- C. Lighting
- D. Mantraps
- E. Fencing
- F. Sensors
Answer: DE
NEW QUESTION 18
Which of the following ISO standards is certified for privacy?
- A. ISO 9001
- B. ISO 27002
- C. ISO 27701
- D. ISO 31000
Answer: C
NEW QUESTION 19
A security analyst is performing a packet capture on a series of SOAP HTTP requests for a security assessment. The analyst redirects the output to a file After the capture is complete, the analyst needs to review the first transactions quickly and then search the entire series of requests for a particular string Which of the following would be BEST to use to accomplish the task? (Select TWO).
- A. head
- B. Tcpdump
- C. grep
- D. rail
- E. curl
- F. openssi
- G. dd
Answer: AB
NEW QUESTION 20
A small company that does not have security staff wants to improve its security posture. Which of the following would BEST assist the company?
- A. MSSP
- B. SOAR
- C. IaaS
- D. PaaS
Answer: B
NEW QUESTION 21
......
Thanks for reading the newest SY0-601 exam dumps! We recommend you to try the PREMIUM Dumpscollection.com SY0-601 dumps in VCE and PDF here: https://www.dumpscollection.net/dumps/SY0-601/ (218 Q&As Dumps)