Exam Details

  • Exam Code
    :SY0-701
  • Exam Name
    :CompTIA Security+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :700 Q&As
  • Last Updated
    :Mar 24, 2025

CompTIA CompTIA Certifications SY0-701 Questions & Answers

  • Question 331:

    A Chief Information Security Officer (CISO) wants to explicitly raise awareness about the increase of ransomware-as-a-service in a report to the management team. Which of the following best describes the threat actor in the CISO's report?

    A. Insider threat

    B. Hacktivist

    C. Nation-state

    D. Organized crime

  • Question 332:

    An enterprise is trying to limit outbound DNS traffic originating from its internal network. Outbound DNS requests will only be allowed from one device with the IP address 10.50.10.25. Which of the following firewall ACLs will accomplish this goal?

    A. Access list outbound permit 0.0.0.0/0 0.0.0.0/0 port 53 Access list outbound deny 10.50.10.25/32 0.0.0.0/0 port 53

    B. Access list outbound permit 0.0.0.0/0 10.50.10.25/32 port 53 Access list outbound deny 0.0.0.0/0 0.0.0.0/0 port 53

    C. Access list outbound permit 0.0.0.0/0 0.0.0.0/0 port 53 Access list outbound deny 0.0.0.0/0 10.50.10.25/32 port 53

    D. Access list outbound permit 10.50.10.25/32 0.0.0.0/0 port 53 Access list outbound deny 0.0.0.0/0 0.0.0.0/0 port 53

  • Question 333:

    Which of the following is the most likely to be included as an element of communication in a security awareness program?

    A. Reporting phishing attempts or other suspicious activities

    B. Detecting insider threats using anomalous behavior recognition

    C. Verifying information when modifying wire transfer data

    D. Performing social engineering as part of third-party penetration testing

  • Question 334:

    Malware spread across a company's network after an employee visited a compromised industry blog. Which of the following best describes this type of attack?

    A. Impersonation

    B. Disinformation

    C. Watering-hole

    D. Smishing

  • Question 335:

    An organization is struggling with scaling issues on its VPN concentrator and internet circuit due to remote work. The organization is looking for a software solution that will allow it to reduce traffic on the VPN and internet circuit, while still providing encrypted tunnel access to the data center and monitoring of remote employee internet traffic. Which of the following will help achieve these objectives?

    A. Deploying a SASE solution to remote employees

    B. Building a load-balanced VPN solution with redundant internet

    C. Purchasing a low-cost SD-WAN solution for VPN traffic

    D. Using a cloud provider to create additional VPN concentrators

  • Question 336:

    A security analyst is reviewing alerts in the SIEM related to potential malicious network traffic coming from an employee's corporate laptop. The security analyst has determined that additional data about the executable running on the machine is necessary to continue the investigation. Which of the following logs should the analyst use as a data source?

    A. Application

    B. IPS/IDS

    C. Network

    D. Endpoint

  • Question 337:

    The management team notices that new accounts that are set up manually do not always have correct access or permissions.

    Which of the following automation techniques should a systems administrator use to streamline account creation?

    A. Guard rail script

    B. Ticketing workflow

    C. Escalation script

    D. User provisioning script

  • Question 338:

    Which of the following can best protect against an employee inadvertently installing malware on a company system?

    A. Host-based firewall

    B. System isolation

    C. Least privilege

    D. Application allow list

  • Question 339:

    A company needs to provide administrative access to internal resources while minimizing the traffic allowed through the security boundary. Which of the following methods is most secure?

    A. Implementing a bastion host

    B. Deploying a perimeter network

    C. Installing a WAF

    D. Utilizing single sign-on

  • Question 340:

    Which of the following should a systems administrator use to ensure an easy deployment of resources within the cloud provider?

    A. Software as a service

    B. Infrastructure as code

    C. Internet of Things

    D. Software-defined networking

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SY0-701 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.