Exam Details

  • Exam Code
    :SY0-601
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :1334 Q&As
  • Last Updated
    :Mar 21, 2025

CompTIA CompTIA Certifications SY0-601 Questions & Answers

  • Question 41:

    Which of the following best represents an application that does not have an on-premises requirement and is accessible from anywhere?

    A. PaaS

    B. Hybrid cloud

    C. Private cloud

    D. IaaS

    E. SaaS

  • Question 42:

    During an investigation, events from two affected servers in the same subnetwork occurred at the same time:

    Server 1: 192.168.10.1 [01/Apr/2021:06:00:00 PST] SAN access denied for user 'admin' Server 2: 192.168.10.6 [01/Apr/2021:06:01:01 CST] SAN access successful for user 'admin'

    Which of the following should be consistently configured to prevent the issue seen in the logs?

    A. Geolocation

    B. TOTP

    C. NTP

    D. MFA

  • Question 43:

    Which of the following tools can assist with detecting an employee who has accidentally emailed a file containing a customer's PII?

    A. SCAP

    B. NetFlow

    C. Antivirus

    D. DLP

  • Question 44:

    A bank insists all of its vendors must prevent data loss on stolen laptops. Which of the following strategies is the bank requiring?

    A. Encryption at rest

    B. Masking

    C. Data classification

    D. Permission restrictions

  • Question 45:

    After a recent vulnerability scan, a security engineer needs to harden the routers within the corporate network. Which of the following is the most appropriate to disable?

    A. Console access

    B. Routing protocols

    C. VLANs

    D. Web-based administration

  • Question 46:

    A company requires hard drives to be securely wiped before sending decommissioned systems to recycling. Which of the following best describes this policy?

    A. Enumeration

    B. Sanitization

    C. Destruction

    D. Inventory

  • Question 47:

    An attacker posing as the Chief Executive Officer calls an employee and instructs the employee to buy gift cards. Which of the following techniques is the attacker using?

    A. Smishing

    B. Phishing

    C. Impersonating

    D. Vishing

  • Question 48:

    Which of the following best describes a use case for a DNS sinkhole?

    A. Attackers can see a DNS sinkhole as a highly valuable resource to identify a company's domain structure.

    B. A DNS sinkhole can be used to draw employees away from known-good websites to malicious ones owned by the attacker.

    C. A DNS sinkhole can be used to capture traffic to known-malicious domains used by attackers.

    D. A DNS sinkhole can be set up to attract potential attackers away from a company's network resources.

  • Question 49:

    Which of the following explains why an attacker cannot easily decrypt passwords using a rainbow table attack?

    A. Digital signatures

    B. Salting

    C. Hashing

    D. Perfect forward secrecy

  • Question 50:

    A company reduced the area utilized in its data center by creating virtual networking through automation and by creating provisioning routes and rules through scripting. Which of the following does this example describe?

    A. IaC

    B. MSSP

    C. Containers

    D. SaaS

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-601 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.