πŸ”

SY0-701 β€” questions

Page 4 of 31 Β· 603 total questions.

Topic 1 Β· Question 61

Which of the following allows for the attribution of messages to individuals?

  • AAdaptive identity
  • BNon-repudiation (correct answer)
  • CAuthentication
  • DAccess logs
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Non-repudiation

Topic 1 Β· Question 62

Which of the following is the best way to consistently determine on a daily basis whether security settings on servers have been modified?

  • AAutomation (correct answer)
  • BCompliance checklist
  • CAttestation
  • DManual audit
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Automation This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 63

Which of the following tools can assist with detecting an employee who has accidentally emailed a file containing a customer’s PII?

  • ASCAP
  • BNetFlow
  • CAntivirus
  • DDLP (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: DLP

Explanation

Data loss prevention identifies sensitive data and prevents unauthorized disclosure or transfer.

Topic 1 Β· Question 64

An organization recently updated its security policy to include the following statement: Regular expressions are included in source code to remove special characters such as $, |, ;. &, `, and ? from variables set by forms in a web application. Which of the following best explains the security technique the organization adopted by making this addition to the policy?

  • AIdentify embedded keys
  • BCode debugging
  • CInput validation (correct answer)
  • DStatic code analysis
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Input validation This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 65

A security analyst and the management team are reviewing the organizational performance of a recent phishing campaign. The user click-through rate exceeded the acceptable risk threshold, and the management team wants to reduce the impact when a user clicks on a link in a phishing message. Which of the following should the analyst do?

  • APlace posters around the office to raise awareness of common phishing activities.
  • BImplement email security filters to prevent phishing emails from being delivered.
  • CUpdate the EDR policies to block automatic execution of downloaded programs. (correct answer)
  • DCreate additional training for users to recognize the signs of phishing attempts.
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Update the EDR policies to block automatic execution of downloaded programs.

Explanation

Endpoint detection and response monitors endpoint activity and supports detection, containment, and investigation. This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 66

Which of the following has been implemented when a host-based firewall on a legacy Linux system allows connections from only specific internal IP addresses?

  • ACompensating control (correct answer)
  • BNetwork segmentation
  • CTransfer of risk
  • DSNMP traps
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Compensating control

Topic 1 Β· Question 67

The management team notices that new accounts that are set up manually do not always have correct access or permissions. Which of the following automation techniques should a systems administrator use to streamline account creation?

  • AGuard rail script
  • BTicketing workflow
  • CEscalation script
  • DUser provisioning script (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: User provisioning script

Topic 1 Β· Question 68

A company is planning to set up a SIEM system and assign an analyst to review the logs on a weekly basis. Which of the following types of controls is the company setting up?

  • ACorrective
  • BPreventive
  • CDetective (correct answer)
  • DDeterrent
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: Detective

Topic 1 Β· Question 69

A systems administrator is looking for a low-cost application-hosting solution that is cloud-based. Which of the following meets these requirements?

  • AServerless framework (correct answer)
  • BType 1 hypervisor
  • CSD-WAN
  • DSDN
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Serverless framework

Topic 1 Β· Question 70

A security operations center determines that the malicious activity detected on a server is normal. Which of the following activities describes the act of ignoring detected activity in the future?

  • ATuning (correct answer)
  • BAggregating
  • CQuarantining
  • DArchiving
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Tuning This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 71

A security analyst reviews domain activity logs and notices the following: Which of the following is the best explanation for what the security analyst has discovered?

Exhibit 1 for question 71
  • AThe user jsmith’s account has been locked out.
  • BA keylogger is installed on jsmith’s workstation.
  • CAn attacker is attempting to brute force jsmith’s account. (correct answer)
  • DRansomware has been deployed in the domain.
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: An attacker is attempting to brute force jsmith’s account. This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 72

A company is concerned about weather events causing damage to the server room and downtime. Which of the following should the company consider?

  • AClustering servers
  • BGeographic dispersion (correct answer)
  • CLoad balancers
  • DOff-site backups
Reveal answer & explanation
Correct answer: B

The correct answer is B. Option B: Geographic dispersion

Topic 1 Β· Question 73

Which of the following is a primary security concern for a company setting up a BYOD program?

  • AEnd of life
  • BBuffer overflow
  • CVM escape
  • DJailbreaking (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Jailbreaking This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 74

A company decided to reduce the cost of its annual cyber insurance policy by removing the coverage for ransomware attacks. Which of the following analysis elements did the company most likely use in making this decision?

  • AMTTR
  • BRTO
  • CARO (correct answer)
  • DMTBF
Reveal answer & explanation
Correct answer: C

The correct answer is C. Option C: ARO

Topic 1 Β· Question 75

Which of the following is the most likely to be included as an element of communication in a security awareness program?

  • AReporting phishing attempts or other suspicious activities (correct answer)
  • BDetecting insider threats using anomalous behavior recognition
  • CVerifying information when modifying wire transfer data
  • DPerforming social engineering as part of third-party penetration testing
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Reporting phishing attempts or other suspicious activities

Explanation

Phishing uses deceptive communication to obtain credentials, money, or execution of malicious content. This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 78

Which of the following is the phase in the incident response process when a security analyst reviews roles and responsibilities?

  • APreparation (correct answer)
  • BRecovery
  • CLessons learned
  • DAnalysis
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Preparation This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 79

After a recent vulnerability scan, a security engineer needs to harden the routers within the corporate network. Which of the following is the most appropriate to disable?

  • AConsole access
  • BRouting protocols
  • CVLANs
  • DWeb-based administration (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: Web-based administration This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 80

A security administrator needs a method to secure data in an environment that includes some form of checks so track any changes. Which of the following should the administrator set up to achieve this goal?

  • ASPF
  • BGPO
  • CNAC
  • DFIM (correct answer)
Reveal answer & explanation
Correct answer: D

The correct answer is D. Option D: FIM This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 81

An administrator is reviewing a single server's security logs and discovers the following: Which of the following best describes the action captured in this log file?

Exhibit 1 for question 81
  • ABrute-force attack (correct answer)
  • BPrivilege escalation
  • CFailed password audit
  • DForgotten password by the user
Reveal answer & explanation
Correct answer: A

The correct answer is A. Option A: Brute-force attack This option keeps traffic private / properly secured as required.

Topic 1 Β· Question 82 Β· Select all that apply

A security engineer is implementing FDE for all laptops in an organization. Which of the following are the most important for the engineer to consider as part of the planning process? (Choose two.)

  • AKey escrow (correct answer)
  • BTPM presence (correct answer)
  • CDigital signatures
  • DData tokenization
  • EPublic key management
  • FCertificate authority linking
Reveal answer & explanation
Correct answer: A, B

The correct answer is A, B. Option A: Key escrow Option B: TPM presence This option keeps traffic private / properly secured as required.

Showing questions 61–80 of 603 Β· Page 4 of 31