🔍

SY0-701 — questions

Page 27 of 31 · 603 total questions.

Topic 1 · Question 527

A security analyst created a fake account and saved the password in a non-readily accessible directory in a spreadsheet. An alert was also configured to notify the security team if the spreadsheet is opened. Which of the following best describes the deception method being deployed?

  • AHoneypot
  • BHoneyfile (correct answer)
  • CHoneytoken
  • DHoneynet
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Honeyfile This option keeps traffic private / properly secured as required.

Topic 1 · Question 528

Which of the following is the best way to provide secure, remote access for employees while minimizing the exposure of a company’s internal network?

  • AVPN (correct answer)
  • BLDAP
  • CFTP
  • DRADIUS
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: VPN

Explanation

A VPN creates an encrypted tunnel across an untrusted network for private remote or site connectivity. This option keeps traffic private / properly secured as required.

Topic 1 · Question 529

A company wants to track modifications to the code that is used to build new virtual servers. Which of the following will the company most likely deploy?

  • AChange management ticketing system
  • BBehavioral analyzer
  • CCollaboration platform
  • DVersion control tool (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Version control tool

Topic 1 · Question 530

Which of the following documents details how to accomplish a technical security task?

  • AStandard
  • BPolicy
  • CGuideline
  • DProcedure (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Procedure This option keeps traffic private / properly secured as required.

Topic 1 · Question 531

While conducting a business continuity tabletop exercise, the security team becomes concerned by potential impact if a generator was to develop a fault during failover. Which of the following is the team most likely to consider in regard to risk management activities?

  • ARPO
  • BARO
  • CBIA (correct answer)
  • DMTTR
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: BIA This option keeps traffic private / properly secured as required.

Topic 1 · Question 532

Which of the following is prevented by proper data sanitization?

  • AHackers’ ability to obtain data from used hard drives (correct answer)
  • BDevices reaching end-of-life and losing support
  • CDisclosure of sensitive data through incorrect classification
  • DIncorrect inventory data leading to a laptop shortage
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Hackers’ ability to obtain data from used hard drives

Topic 1 · Question 533

A certificate authority needs to post information about expired certificates. Which of the following would accomplish this task?

  • ATPM
  • BCRL (correct answer)
  • CPKI
  • DCSR
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: CRL

Topic 1 · Question 534

Which of the following can best contribute to prioritizing patch applications?

  • ACVSS (correct answer)
  • BSCAP
  • COSINT
  • DCVE
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: CVSS

Topic 1 · Question 535

A systems administrator creates a script that validates OS version, patch levels, and installed applications when users log in. Which of the following examples best describes the purpose of this script?

  • AResource scaling
  • BPolicy enumeration
  • CBaseline enforcement (correct answer)
  • DGuard rails implementation
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Baseline enforcement

Topic 1 · Question 536

A security analyst learns that an attack vector, which was used as a part of a recent incident, was a well-known IoT device exploit. The analyst needs to review logs to identify the time of initial exploit. Which of the following logs should the analyst review first?

  • AEndpoint
  • BApplication
  • CFirewall (correct answer)
  • DNAC
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Firewall

Explanation

A firewall enforces traffic policy by permitting or blocking connections based on configured rules. This option keeps traffic private / properly secured as required.

Topic 1 · Question 537

A company’s gate access logs show multiple entries from an employee’s ID badge within a two-minute period. Which of the following is this an example of?

  • ARFID cloning (correct answer)
  • BSide-channel attack
  • CShoulder surfing
  • DTailgating
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: RFID cloning

Topic 1 · Question 538

Which of the following most accurately describes the order in which a security engineer should implement secure baselines?

  • ADeploy, maintain, establish
  • BEstablish, maintain, deploy
  • CEstablish, deploy, maintain (correct answer)
  • DDeploy, establish, maintain
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Establish, deploy, maintain This option keeps traffic private / properly secured as required.

Topic 1 · Question 539

A SOC analyst establishes a remote control session on an end user’s machine and discovers the following in a file: gmail.com[ENT] [email protected] [ENT]NoOneCanGuessThis123! [ENT]Hello Susan, it was great to see you the other day! Let’s plan a followup[BACKSPACE]follow-up meeting soon. Here is the link to register. [RTN][CTRL]c [CTRL]v [RTN]after[BACKSPACE]After you register give me a call on my cellphone. Which of the following actions should the SOC analyst perform first?

  • AAdvise the user to change passwords.
  • BReimage the end user’s machine. (correct answer)
  • CCheck the policy on personal email at work.
  • DCheck host firewall logs.
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Reimage the end user’s machine.

Topic 1 · Question 540

Which of the following is a reason environmental variables are a concern when reviewing potential system vulnerabilities?

  • AThe contents of environmental variables could affect the scope and impact of an exploited vulnerability. (correct answer)
  • BIn-memory environmental variable values can be overwritten and used by attackers to insert malicious code.
  • CEnvironmental variables define cryptographic standards for the system and could create vulnerabilities if deprecated algorithms are used.
  • DEnvironmental variables will determine when updates are run and could mitigate the likelihood of vulnerability exploitation.
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: The contents of environmental variables could affect the scope and impact of an exploited vulnerability.

Topic 1 · Question 541

A company evaluates several options that would allow employees to have remote access to the network. The security team wants to ensure the solution includes AAA to comply with internal security policies. Which of the following should the security team recommend?

  • AIPSec with RADIUS (correct answer)
  • BRDP connection with LDAPS
  • CWeb proxy for all remote traffic
  • DJump server with 802.1X
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: IPSec with RADIUS

Explanation

An intrusion prevention system detects and actively blocks malicious traffic inline. This option keeps traffic private / properly secured as required.

Topic 1 · Question 542

An administrator must replace an expired SSL certificate. Which of the following does the administrator need to create the new SSL certificate?

  • ACSR (correct answer)
  • BOCSP
  • CKey
  • DCRL
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: CSR

Topic 1 · Question 543

A systems administrator receives a text message from an unknown number claiming to be the Chief Executive Officer of the company. The message states an emergency situation requires a password reset. Which of the following threat vectors is being used?

  • ATyposquatting
  • BSmishing (correct answer)
  • CPretexting
  • DImpersonation
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Smishing

Topic 1 · Question 544

A Chief Information Security Officer (CISO) wants to: • Prevent employees from downloading malicious content. • Establish controls based on departments and users. • Map internet access for business applications to specific service accounts. • Restrict content based on categorization. Which of the following should the CSO implement?

  • AWeb application firewall
  • BSecure DNS server
  • CJump server
  • DNext-generation firewall (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Next-generation firewall

Explanation

A firewall enforces traffic policy by permitting or blocking connections based on configured rules. This option keeps traffic private / properly secured as required.

Topic 1 · Question 545

A company is aware of a given security risk related to a specific market segment. The business chooses not to accept responsibility and target their services to a different market segment. Which of the following describes this risk management strategy?

  • AExemption
  • BException
  • CAvoid (correct answer)
  • DTransfer
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Avoid This option keeps traffic private / properly secured as required.

Topic 1 · Question 546

A security analyst needs to improve the company’s authentication policy following a password audit. Which of the following should be included in the policy? (Choose two.)

  • ALength (correct answer)
  • BComplexity
  • CLeast privilege
  • DSomething you have
  • ESecurity keys
  • FBiometrics
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Length This option keeps traffic private / properly secured as required.

Showing questions 521540 of 603 · Page 27 of 31