It is more faster and easier to pass the by using . Immediate access to the and find the same core area with professionally verified answers, then PASS your exam with a high score now.

CompTIA SY0-501 Free Dumps Questions Online, Read and Test Now.

NEW QUESTION 1
A company wants to ensure that the validity of publicly trusted certificates used by its web server can be determined even during an extended internet outage. Which of the following should be implemented?

  • A. Recovery agent
  • B. Ocsp
  • C. Crl
  • D. Key escrow

Answer: B

NEW QUESTION 2
A security analyst conducts a manual scan on a known hardened host that identifies many non-compliant items. Which of the following BEST describe why this has occurred? (Select TWO)

  • A. Privileged-user certificated were used to scan the host
  • B. Non-applicable plugins were selected in the scan policy
  • C. The incorrect audit file was used
  • D. The output of the report contains false positives
  • E. The target host has been compromised

Answer: BD

NEW QUESTION 3
A software development manager is taking over an existing software development project. The team currently suffers from poor communication due to a long delay between requirements documentation and feature delivery. This gap is resulting in an above average number of security-related bugs making it into production. Which of the following development methodologies is the team MOST likely using now?

  • A. Agile
  • B. Waterfall
  • C. Scrum
  • D. Spiral

Answer: B

NEW QUESTION 4
Which of the following should be used to implement voice encryption?

  • A. SSLv3
  • B. VDSL
  • C. SRTP
  • D. VoIP

Answer: C

NEW QUESTION 5
A security administrator returning from a short vacation receives an account lock-out message when attempting to log into the computer. After getting the account unlocked the security administrator immediately notices a large amount of emails alerts pertaining to several different user accounts being locked out during the past three days. The security administrator uses system logs to determine that the lock-outs were due to a
brute force attack on all accounts that has been previously logged into that machine.
Which of the following can be implemented to reduce the likelihood of this attack going undetected?

  • A. Password complexity rules
  • B. Continuous monitoring
  • C. User access reviews
  • D. Account lockout policies

Answer: B

NEW QUESTION 6
A security analyst is investigating a security breach. Upon inspection of the audit an access logs, the analyst notices the host was accessed and the /etc/passwd file was modified with a new entry for username “gotcha” and user ID of 0. Which of the following are the MOST likely attack vector and tool the analyst should use to determine if the attack is still ongoing? (Select TWO)

  • A. Logic bomb
  • B. Backdoor
  • C. Keylogger
  • D. Netstat
  • E. Tracert
  • F. Ping

Answer: BD

NEW QUESTION 7
A security analyst reviews the following output:
SY0-501 dumps exhibit
The analyst loads the hash into the SIEM to discover if this hash is seen in other parts of the network. After inspecting a large number of files, the security analyst reports the following:
SY0-501 dumps exhibit
Which of the following is the MOST likely cause of the hash being found in other areas?

  • A. Jan Smith is an insider threat
  • B. There are MD5 hash collisions
  • C. The file is encrypted
  • D. Shadow copies are present

Answer: B

NEW QUESTION 8
Which of the following allows an auditor to test proprietary-software compiled code for security flaws?

  • A. Fuzzing
  • B. Static review
  • C. Code signing
  • D. Regression testing

Answer: A

NEW QUESTION 9
A security administrator is creating a subnet on one of the corporate firewall interfaces to use as a DMZ which is expected to accommodate at most 14 physical hosts.
Which of the following subnets would BEST meet the requirements?

  • A. 192.168.0.16 255.25.255.248
  • B. 192.168.0.16/28
  • C. 192.168.1.50 255.255.25.240
  • D. 192.168.2.32/27

Answer: B

NEW QUESTION 10
AChief Security Officer (CSO) has been unsuccessful in attempts to access the website for a potential partner (www.example.net). Which of the following rules is preventing the CSO from accessing the site?
Blocked sites: *.nonews.com, *.rumorhasit.net, *.mars?

  • A. Rule 1: deny from inside to outside source any destination any service smtp
  • B. Rule 2: deny from inside to outside source any destination any service ping
  • C. Rule 3: deny from inside to outside source any destination {blocked sites} service http-https
  • D. Rule 4: deny from any to any source any destination any service any

Answer: C

NEW QUESTION 11
A company has two wireless networks utilizing captive portals. Some employees report getting a trust error in their browsers when connecting to one of the networks. Both captive portals are using the same server certificate for authentication, but the analyst notices the following differences between the two certificate details:
Certificate 1
Certificate Path: Geotrust Global CA
*company.com Certificate 2 Certificate Path:
*company.com
Which of the following would resolve the problem?

  • A. Use a wildcard certificate.
  • B. Use certificate chaining.
  • C. Use a trust model.
  • D. Use an extended validation certificate.

Answer: B

NEW QUESTION 12
The process of applying a salt and cryptographic hash to a password then repeating the process many times is known as which of the following?

  • A. Collision resistance
  • B. Rainbow table
  • C. Key stretching
  • D. Brute force attack

Answer: C

NEW QUESTION 13
A mobile device user is concerned about geographic positioning information being included in messages sent between users on a popular social network platform. The user turns off the functionality in the application, but wants to ensure the application cannot re-enable the setting without the knowledge of the user.
Which of the following mobile device capabilities should the user disable to achieve the stated goal?

  • A. Device access control
  • B. Location based services
  • C. Application control
  • D. GEO-Tagging

Answer: D

NEW QUESTION 14
A portable data storage device has been determined to have malicious firmware. Which of the following is the BEST course of action to ensure data confidentiality?

  • A. Format the device
  • B. Re-image the device
  • C. Perform virus scan in the device
  • D. Physically destroy the device

Answer: C

NEW QUESTION 15
AChief Information Officer (CIO) asks the company's security specialist if the company should spend any funds on malware protection for a specific server. Based on a risk assessment, the ARO value of a malware infection for a server is 5 and the annual cost for the malware protection is $2500. Which of the following SLE values warrants a recommendation against purchasing the malware protection?

  • A. $500
  • B. $1000
  • C. $2000
  • D. $2500

Answer: A

NEW QUESTION 16
Legal authorities notify a company that its network has been compromised for the second time in two years. The investigation shows the attackers were able to use the same vulnerability on different systems in both attacks. Which of the following would have allowed the security team to use historical information to protect against the second attack?

  • A. Key risk indicators
  • B. Lessons learned
  • C. Recovery point objectives
  • D. Tabletop exercise

Answer: B

NEW QUESTION 17
Joe, a user, wants to send Ann, another user, a confidential document electronically. Which of the following should Joe do to ensure the document is protected from eavesdropping?

  • A. Encrypt it with Joe’s private key
  • B. Encrypt it with Joe’s public key
  • C. Encrypt it with Ann’s private key
  • D. Encrypt it with Ann’s public key

Answer: D

NEW QUESTION 18
Which of the following specifically describes the exploitation of an interactive process to access otherwise restricted areas of the OS?

  • A. Privilege escalation
  • B. Pivoting
  • C. Process affinity
  • D. Buffer overflow

Answer: A

P.S. Surepassexam now are offering 100% pass ensure SY0-501 dumps! All SY0-501 exam questions have been updated with correct answers: https://www.surepassexam.com/SY0-501-exam-dumps.html (540 New Questions)