πŸ”

SY0-701 β€” questions

Page 24 of 31 Β· 603 total questions.

Topic 1 Β· Question 467

Which of the following aspects of the data management life cycle is most directly impacted by local and international regulations?

  • ADestruction
  • BCertification
  • CRetention (correct answer)
  • DSanitization
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Retention

Topic 1 Β· Question 468

An analyst is reviewing job postings to ensure sensitive company information is not being shared with the general public. Which of the following is the analyst most likely looking for?

  • AOffice addresses
  • BSoftware versions (correct answer)
  • CList of board members
  • DGovernment identification numbers
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Software versions

Topic 1 Β· Question 469

An engineer has ensured that the switches are using the latest OS, the servers have the latest patches, and the endpoints' definitions are up to date. Which of the following will these actions most effectively prevent?

  • AZero-day attacks
  • BInsider threats
  • CEnd-of-life support
  • DKnown exploits (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Known exploits

Topic 1 Β· Question 470

Which of the following is most likely a security concern when installing and using low-cost IoT devices in infrastructure environments?

  • ACountry of origin
  • BDevice responsiveness
  • CEase of deployment
  • DStorage of data (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Storage of data This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 471

A company captures log-in details and reviews them each week to identify conditions such as excessive log-in attempts and frequent lockouts. Which of the following should a security analyst recommend to improve security compliance monitoring?

  • AIncluding the date and person who reviewed the information in a report
  • BAdding automated alerting when anomalies occur (correct answer)
  • CRequiring a statement each week that no exceptions were noted
  • DMasking the username in a report to protect privacy
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Adding automated alerting when anomalies occur This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 472

A security team is in the process of hardening the network against externally crafted malicious packets. Which of the following is the most secure method to protect the internal network?

  • AAnti-malware solutions
  • BHost-based firewalls
  • CIntrusion prevention systems (correct answer)
  • DNetwork access control
  • ENetwork allow list
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Intrusion prevention systems This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 473

Which of the following is the best way to prevent an unauthorized user from plugging a laptop into an employee's phone network port and then using tools to scan for database servers?

  • AMAC filtering (correct answer)
  • BSegmentation
  • CCertification
  • DIsolation
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: MAC filtering

Topic 1 Β· Question 474

Which of the following should a systems administrator use to decrease the company's hardware attack surface?

  • AReplication
  • BIsolation
  • CCentralization
  • DVirtualization (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Virtualization

Topic 1 Β· Question 475

A company wants to add an MFA solution for all employees who access the corporate network remotely. Log-in requirements include something you know, are, and have. The company wants a solution that does not require purchasing third-party applications or specialized hardware. Which of the following MFA solutions would best meet the company's requirements?

  • ASmart card with PIN and password
  • BSecurity questions and a one-time passcode sent via email
  • CVoice and fingerprint verification with an SMS one-time passcode
  • DMobile application-generated, one-time passcode with facial recognition (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Mobile application-generated, one-time passcode with facial recognition

Topic 1 Β· Question 476

A company is using a legacy FTP server to transfer financial data to a third party. The legacy system does not support SFTP, so a compensating control is needed to protect the sensitive, financial data in transit. Which of the following would be the most appropriate for the company to use?

  • ATelnet connection
  • BSSH tunneling (correct answer)
  • CPatch installation
  • DFull disk encryption
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: SSH tunneling

Topic 1 Β· Question 477

A security manager wants to reduce the number of steps required to identify and contain basic threats. Which of the following will help achieve this goal?

  • ASOAR (correct answer)
  • BSIEM
  • CDMARC
  • DNIDS
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: SOAR This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 478

The Chief Information Officer (CIO) asked a vendor to provide documentation detailing the specific objectives within the compliance framework that the vendor's services meet. The vendor provided a report and a signed letter stating that the services meet 17 of the 21 objectives. Which of the following did the vendor provide to the CIO?

  • APenetration test results
  • BSelf-assessment findings
  • CAttestation of compliance (correct answer)
  • DThird-party audit report
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Attestation of compliance

Topic 1 Β· Question 479

Which of the following describes the most effective way to address OS vulnerabilities after they are identified?

  • AEndpoint protection
  • BRemoval of unnecessary software
  • CConfiguration enforcement
  • DPatching (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Patching

Topic 1 Β· Question 480

The management team reports that employees are missing features on company-provided tablets, which is causing productivity issues. The management team directs the IT team to resolve the issue within 48 hours. Which of the following would be the best solution for the IT team to leverage in this scenario?

  • AEDR
  • BCOPE
  • CMDM (correct answer)
  • DFDE
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: MDM

Topic 1 Β· Question 481

A company is implementing a policy to allow employees to use their personal equipment for work. However, the company wants to ensure that only company-approved applications can be installed. Which of the following addresses this concern?

  • AMDM (correct answer)
  • BContainerization
  • CDLP
  • DFIM
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: MDM

Topic 1 Β· Question 482

An alert references attacks associated with a zero-day exploit. An analyst places a bastion host in the network to reduce the risk of the exploit. Which of the following types of controls is the analyst implementing?

  • ACompensating (correct answer)
  • BDetective
  • COperational
  • DPhysical
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Compensating

Topic 1 Β· Question 483

A penetration test has demonstrated that domain administrator accounts were vulnerable to pass-the-hash attacks. Which of the following would have been the best strategy to prevent the threat actor from using domain administrator accounts?

  • AAudit each domain administrator account weekly for password compliance.
  • BImplement a privileged access management solution. (correct answer)
  • CCreate IDS policies to monitor domain controller access.
  • DUse Group Policy to enforce password expiration.
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Implement a privileged access management solution.

Topic 1 Β· Question 484

Which of the following is an example of memory injection?

  • ATwo processes access the same variable, allowing one to cause a privilege escalation.
  • BA process receives an unexpected amount of data, which causes malicious code to be executed.
  • CMalicious code is copied to the allocated space of an already running process. (correct answer)
  • DAn executable is overwritten on the disk, and malicious code runs the next time it is executed.
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Malicious code is copied to the allocated space of an already running process.

Topic 1 Β· Question 485

A security administrator is implementing encryption on all hard drives in an organization. Which of the following security concepts is the administrator applying?

  • AIntegrity
  • BAuthentication
  • CZero Trust
  • DConfidentiality (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Confidentiality This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 486

An administrator has configured a quarantine subnet for all guest devices that connect to the network. Which of the following would be best for the security team to perform before allowing access to corporate resources?

  • ADevice fingerprinting
  • BCompliance attestation (correct answer)
  • CPenetration test
  • DApplication vulnerability test
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Compliance attestation This option keeps traffic private / properly secured as required.

Showing questions 461–480 of 603 Β· Page 24 of 31