πŸ”

SY0-701 β€” questions

Page 30 of 31 Β· 603 total questions.

Topic 1 Β· Question 587

A security professional discovers a folder that contains an employee's personal information located on the enterprise’s shared drive. Which of the following best describes the data type the security professional should use to identify organizational policies and standards concerning the storage of employees' personal information?

  • ALegal
  • BFinancial
  • CPrivacy (correct answer)
  • DIntellectual property
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Privacy This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 588

A site reliability engineer is designing a recovery strategy that requires quick failover to an identical site if the primary facility goes down. Which of the following types of sites should the engineer consider?

  • ARecovery site
  • BHot site (correct answer)
  • CCold site
  • DWarm site
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Hot site

Topic 1 Β· Question 589

Which of the following would an organization most likely use to minimize the loss of data on a file server in the event data needs to be restored?

  • ASnapshots (correct answer)
  • BJournaling
  • CObfuscation
  • DTokenization
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Snapshots

Topic 1 Β· Question 590

Which of the following solutions would most likely be used in the financial industry to mask sensitive data?

  • ATokenization (correct answer)
  • BHashing
  • CSalting
  • DSteganography
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Tokenization

Topic 1 Β· Question 591

Which of the following is a type of vulnerability that may result from outdated algorithms or keys?

  • AHash collision
  • BCryptographic (correct answer)
  • CBuffer overflow
  • DInput validation
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Cryptographic

Topic 1 Β· Question 592

A company wants to prevent proprietary and confidential company information from being shared to outsiders. Which of the following would this best describe?

  • AMOA
  • BSLA
  • CMSA
  • DNDA (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: NDA

Topic 1 Β· Question 593

A security administrator needs to reduce the attack surface in the company's data centers. Which of the following should the security administrator do to complete this task?

  • AImplement a honeynet.
  • BDefine Group Policy on the servers.
  • CConfigure the servers for high availability.
  • DUpgrade end-of-support operating systems. (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Upgrade end-of-support operating systems. This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 594

Which of the following is a prerequisite for a DLP solution?

  • AData destruction
  • BData sanitization
  • CData classification (correct answer)
  • DData masking
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Data classification

Topic 1 Β· Question 595

A business provides long-term cold storage services to banks that are required to follow regulator-imposed data retention guidelines. Banks that use these services require that data is disposed of in a specific manner at the conclusion of the regulatory threshold for data retention. Which of the following aspects of data management is the most important to the bank in the destruction of this data?

  • AEncryption
  • BClassification
  • CCertification (correct answer)
  • DProcurement
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Certification

Topic 1 Β· Question 596

The physical security team at a company receives reports that employees are not displaying their badges. The team also observes employees tailgating at controlled entrances. Which of the following topics will the security team most likely emphasize in upcoming security training?

  • ASocial engineering
  • BSituational awareness (correct answer)
  • CPhishing
  • DAcceptable use policy
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Situational awareness This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 597

Which of the following would most likely be a hacktivist's motive?

  • AFinancial gain
  • BEspionage
  • CPhilosophical beliefs (correct answer)
  • DRevenge
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Philosophical beliefs

Topic 1 Β· Question 598

During a recent log review, an analyst discovers evidence of successful injection attacks. Which of the following will best address this issue?

  • AAuthentication
  • BSecure cookies
  • CStatic code analysis
  • DInput validation (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Input validation

Topic 1 Β· Question 599

Which of the following is the first step to secure a newly deployed server?

  • AClose unnecessary service ports.
  • BUpdate the current version of the software. (correct answer)
  • CAdd the device to the ACL.
  • DUpgrade the OS version.
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Update the current version of the software. This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 600

A security analyst receives an alert that there was an attempt to download known malware. Which of the following actions would allow the best chance to analyze the malware?

  • AReview the IPS logs and determine which command-and-control IPs were blocked.
  • BAnalyze application logs to see how the malware attempted to maintain persistence.
  • CRun vulnerability scans to check for systems and applications that are vulnerable to the malware
  • DObtain and execute the malware in a sandbox environment and perform packet captures. (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Obtain and execute the malware in a sandbox environment and perform packet captures. This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 601

Which of the following should be used to ensure a user has the permissions needed to effectively do an assigned job role?

  • AChanging default passwords
  • BImplementing least privilege (correct answer)
  • CEnforcing baseline configurations
  • DApplying network segmentation
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Implementing least privilege

Explanation

Least privilege grants only the permissions needed for a task, limiting damage from mistakes or compromised accounts.

Topic 1 Β· Question 602

An employee receives a text message from an unrecognized number claiming to be the Chief Executive Officer and asking the employee to purchase gift cards. Which of the following types of attacks describes this example?

  • AWatering-hole
  • BDisinformation
  • CPhishing
  • DImpersonation (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Impersonation

Explanation

Network address translation maps addresses between networks and commonly lets private hosts share public connectivity.

Topic 1 Β· Question 603

An unexpected and out-of-character email message from a Chief Executive Officer's corporate account asked an employee to provide financial information and to change the recipient's contact number. Which of the following attack vectors is most likely being used?

  • ABusiness email compromise (correct answer)
  • BPhishing
  • CBrand impersonation
  • DPretexting
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Business email compromise

Topic 1 Β· Question 604

Which of the following should an organization use to ensure that it can review the controls and performance of a service provider or vendor?

  • AService-level agreement
  • BMemorandum of agreement
  • CRight-to-audit clause (correct answer)
  • DSupply chain analysis
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Right-to-audit clause

Topic 1 Β· Question 605

Which of the following is used to calculate the impact to an organization per cybersecurity incident?

  • ASLE (correct answer)
  • BALE
  • CARO
  • DSLA
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: SLE This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 606

A retail company receives a request to remove a customer's data. Which of the following is the retail company considered under GDPR legislation?

  • AData processor
  • BData controller (correct answer)
  • CData subject
  • DData custodian
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Data controller

Showing questions 581–600 of 603 Β· Page 30 of 31