🔍

SY0-701 — questions

Page 18 of 31 · 603 total questions.

Topic 1 · Question 346

A security manager created new documentation to use in response to various types of security incidents. Which of the following is the next step the manager should take?

  • ASet the maximum data retention policy.
  • BSecurely store the documents on an air-gapped network.
  • CReview the documents’ data classification policy.
  • DConduct a tabletop exercise with the team. (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Conduct a tabletop exercise with the team. This option keeps traffic private / properly secured as required.

Topic 1 · Question 347

After failing an audit twice, an organization has been ordered by a government regulatory agency to pay fines. Which of the following causes this action?

  • ANon-compliance (correct answer)
  • BContract violations
  • CGovernment sanctions
  • DRules of engagement
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Non-compliance

Topic 1 · Question 348 · Select all that apply

A company is developing a critical system for the government and storing project information on a fileshare. Which of the following describes how this data will most likely be classified? (Choose two.)

  • APrivate
  • BConfidential (correct answer)
  • CPublic
  • DOperational
  • EUrgent
  • FRestricted (correct answer)
Reveal answer & explanation
Correct answer: B, F

The correct answer is B, F. Option B: Confidential Option F: Restricted

Topic 1 · Question 349

Which of the following activities is included in the post-incident review phase?

  • ADetermining the root cause of the incident (correct answer)
  • BDeveloping steps to mitigate the risks of the incident
  • CValidating the accuracy of the evidence collected during the investigation
  • DReestablishing the compromised system’s configuration and settings
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Determining the root cause of the incident

Topic 1 · Question 350

Which of the following attacks exploits a potential vulnerability as a result of using weak cryptographic algorithms?

  • APassword cracking (correct answer)
  • BOn-path
  • CDigital signing
  • DSide-channel
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Password cracking

Topic 1 · Question 351

Which of the following is a preventive physical security control?

  • AVideo surveillance system
  • BBollards (correct answer)
  • CAlarm system
  • DMotion sensors
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Bollards This option keeps traffic private / properly secured as required.

Topic 1 · Question 352

Which of the following is most likely to be used as a just-in-time reference document within a security operations center?

  • AChange management policy
  • BRisk profile
  • CPlaybook (correct answer)
  • DSIEM profile
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Playbook This option keeps traffic private / properly secured as required.

Topic 1 · Question 353

A security engineer configured a remote access VPN. The remote access VPN allows end users to connect to the network by using an agent that is installed on the endpoint, which establishes an encrypted tunnel. Which of the following protocols did the engineer most likely implement?

  • AGRE
  • BIPSec (correct answer)
  • CSD-WAN
  • DEAP
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: IPSec

Explanation

An intrusion prevention system detects and actively blocks malicious traffic inline. This option keeps traffic private / properly secured as required.

Topic 1 · Question 354

Executives at a company are concerned about employees accessing systems and information about sensitive company projects unrelated to the employees’ normal job duties. Which of the following enterprise security capabilities will the security team most likely deploy to detect that activity?

  • AUBA (correct answer)
  • BEDR
  • CNAC
  • DDLP
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: UBA This option keeps traffic private / properly secured as required.

Topic 1 · Question 355

Several customers want an organization to verify its security controls are operating effectively and have requested an independent opinion. Which of the following is the most efficient way to address these requests?

  • AHire a vendor to perform a penetration test
  • BPerform an annual self-assessment.
  • CAllow each client the right to audit
  • DProvide a third-party attestation report (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Provide a third-party attestation report This option keeps traffic private / properly secured as required.

Topic 1 · Question 356

A university employee logged on to the academic server and attempted to guess the system administrators’ log-in credentials. Which of the following security measures should the university have implemented to detect the employee’s attempts to gain access to the administrators’ accounts?

  • ATwo-factor authentication
  • BFirewall
  • CIntrusion prevention system
  • DUser activity logs (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: User activity logs This option keeps traffic private / properly secured as required.

Topic 1 · Question 357

Which of the following consequences would a retail chain most likely face from customers in the event the retailer is non-compliant with PCI DSS?

  • AContractual impacts
  • BSanctions
  • CFines
  • DReputational damage (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Reputational damage

Topic 1 · Question 358

A security analyst is reviewing logs and discovers the following: Which of the following should be used to best mitigate this type of attack?

Exhibit 1 for question 358
  • AInput sanitization (correct answer)
  • BSecure cookies
  • CStatic code analysis
  • DSandboxing
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Input sanitization This option keeps traffic private / properly secured as required.

Topic 1 · Question 359

An administrator is installing an SSL certificate on a new system. During testing, errors indicate that the certificate is not trusted. The administrator has verified with the issuing CA and has validated the private key. Which of the following should the administrator check for next?

  • AIf the wildcard certificate is configured
  • BIf the certificate signing request is valid
  • CIf the root certificate is installed (correct answer)
  • DIf the public key is configured
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: If the root certificate is installed

Explanation

A certificate binds a public key to an identity through a trusted certificate authority. This option keeps traffic private / properly secured as required.

Topic 1 · Question 360

An employee emailed a new systems administrator a malicious web link and convinced the administrator to change the email server’s password. The employee used this access to remove the mailboxes of key personnel. Which of the following security awareness concepts would help prevent this threat in the future?

  • ARecognizing phishing (correct answer)
  • BProviding situational awareness training
  • CUsing password management
  • DReviewing email policies
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Recognizing phishing

Explanation

Phishing uses deceptive communication to obtain credentials, money, or execution of malicious content. This option keeps traffic private / properly secured as required.

Topic 1 · Question 361

Which of the following strategies should an organization use to efficiently manage and analyze multiple types of logs?

  • ADeploy a SIEM solution (correct answer)
  • BCreate custom scripts to aggregate and analyze logs.
  • CImplement EDR technology.
  • DInstall a unified threat management appliance.
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Deploy a SIEM solution

Explanation

A SIEM centralizes and correlates security events to support detection, investigation, and reporting.

Topic 1 · Question 362

A new security regulation was announced that will take effect in the coming year. A company must comply with it to remain in business. Which of the following activities should the company perform next?

  • AGap analysis (correct answer)
  • BPolicy review
  • CSecurity procedure evaluation
  • DThreat scope reduction
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Gap analysis This option keeps traffic private / properly secured as required.

Topic 1 · Question 363

An accountant is transferring information to a bank over FTP. Which of the following mitigations should the accountant use to protect the confidentiality of the data?

  • ATokenization
  • BData masking
  • CEncryption (correct answer)
  • DObfuscation
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Encryption

Explanation

Encryption protects confidentiality by making data unreadable without the appropriate key.

Topic 1 · Question 364

An organization has recently decided to implement SSO. The requirements are to leverage access tokens and focus on application authorization rather than user authentication. Which of the following solutions would the engineering team most likely configure?

  • ALDAP
  • BFederation
  • CSAML
  • DOAuth (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: OAuth

Topic 1 · Question 365

Which of the following would most likely be used by attackers to perform credential harvesting?

  • ASocial engineering (correct answer)
  • BSupply chain compromise
  • CThird-party software
  • DRainbow table
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Social engineering

Showing questions 341360 of 603 · Page 18 of 31